CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12141  CVE-2005-0935  Candidate  Multiple SQL injection vulnerabilities in ESMI PayPal Storefront allow remote attackers to execute arbitrary SQL commands via the (1) idpages parameter to pages.php or the (2) id2 parameter to products1.php.  Assigned (20050330)  None (candidate not yet proposed)    View
12142  CVE-2005-0936  Candidate  Cross-site scripting vulnerability in products1h.php in ESMI PayPal Storefront allows remote attackers to inject arbitrary web script or HTML via the id parameter.  Assigned (20050330)  None (candidate not yet proposed)    View
12143  CVE-2005-0937  Candidate  Some futex functions in futex.c for Linux kernel 2.6.x perform get_user calls while holding the mmap_sem semaphore, which could allow local users to cause a deadlock condition in do_page_fault by triggering get_user faults while another thread is executing mmap or other functions.  Assigned (20050330)  None (candidate not yet proposed)    View
12144  CVE-2005-0938  Candidate  Ublog Reload 1.0 through 1.0.4 stores ublogreload.mdb under the web root, which allows remote attackers to read usernames and hashed passwords via a direct request to ublogreload.mdb.  Assigned (20050330)  None (candidate not yet proposed)    View
12145  CVE-2005-0939  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20050330)  None (candidate not yet proposed)    View

Page 19592 of 20943, showing 5 records out of 104715 total, starting on record 97956, ending on 97960

Actions