CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
12113 | CVE-2005-0907 | Candidate | Multiple SQL injection vulnerabilities in Valdersoft Shopping Cart 3.0 allow remote attackers to execute arbitrary SQL commands via (1) the id parameter to category.php, (2) the id parameter to item.php, (3) the lang parameter to index.php, (4) the searchQuery parameter to search_result.php, (5) or the searchTopCategoryID parameter to search_result.php. | Assigned (20050329) | None (candidate not yet proposed) | View | |
12114 | CVE-2005-0908 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in Valdersoft Shopping Cart 3.0 allow remote attackers to inject arbitrary web script or HTML via (1) the lang parameter to index.php or (2) the searchTopCategoryID parameter to search_result.php. | Assigned (20050329) | None (candidate not yet proposed) | View | |
12115 | CVE-2005-0909 | Candidate | PHP remote file inclusion vulnerability in shoutact.php for TKai"s Shoutbox allows remote attackers to execute arbitrary PHP code via the query parameter. | Assigned (20050329) | None (candidate not yet proposed) | View | |
12116 | CVE-2005-0910 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in exoops allow remote attackers to inject arbitrary web script or HTML via (1) the sortdays parameter to viewforum.php or (2) the viewcat parameter to index.php. | Assigned (20050329) | None (candidate not yet proposed) | View | |
12117 | CVE-2005-0911 | Candidate | Multiple SQL injection vulnerabilities in exoops may allow remote attackers to execute arbitrary SQL commands via (1) the viewcat parameter to index.php or (2) the artid parameter in the viewarticle action for index.php. | Assigned (20050329) | None (candidate not yet proposed) | View |
Page 19596 of 20943, showing 5 records out of 104715 total, starting on record 97976, ending on 97980