CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12209  CVE-2005-1003  Candidate  Directory traversal vulnerability in index.php for ProfitCode PayProCart 3.0 allows remote attackers to include arbitrary PHP files via .. (dot dot) sequences in the modID parameter.  Assigned (20050407)  None (candidate not yet proposed)    View
12210  CVE-2005-1004  Candidate  Cross-site scripting (XSS) vulnerability in usrdetails.php in ProfitCode PayProCart 3.0 allows remote attackers to inject arbitrary web script or HTML via the sgnuptype parameter.  Assigned (20050407)  None (candidate not yet proposed)    View
12211  CVE-2005-1005  Candidate  ProfitCode PayProCart 3.0 allows remote attackers to bypass authentication and gain administrative privileges to the admin control panel, as demonstrated via a direct request to adminshop/index.php with hex-encoded .. sequences in the ftoedit parameter.  Assigned (20050407)  None (candidate not yet proposed)    View
12212  CVE-2005-1006  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in SonicWALL SOHO 5.1.7.0 allow remote attackers to inject arbitrary web script or HTML via (1) the URL or (2) the user login name, which is not filtered when the administrator views the log file.  Assigned (20050407)  None (candidate not yet proposed)    View
12213  CVE-2005-1007  Candidate  Unknown vulnerability in the LIST functionality in CommuniGate Pro before 4.3c3 allows remote attackers to cause a denial of service (server crash) via certain multipart messages.  Assigned (20050407)  None (candidate not yet proposed)    View

Page 19580 of 20943, showing 5 records out of 104715 total, starting on record 97896, ending on 97900

Actions