CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12073  CVE-2005-0867  Candidate  Integer overflow in Linux kernel 2.6 allows local users to overwrite kernel memory by writing to a sysfs file.  Assigned (20050326)  None (candidate not yet proposed)    View
12074  CVE-2005-0868  Candidate  AS/400 Telnet 5250 terminal emulation clients, as implemented by (1) IBM client access, (2) Bosanova, (3) PowerTerm, (4) Mochasoft, and possibly other emulations, allows malicious AS/400 servers to execute arbitrary commands via a STRPCO (Start PC Organizer) command followed by STRPCCMD (Start PC command), as demonstrated by creating a backdoor account using REXEC.  Assigned (20050326)  None (candidate not yet proposed)    View
12075  CVE-2005-0869  Candidate  phpSysInfo 2.3 allows remote attackers to obtain sensitive information via a direct request to (1) class.OpenBSD.inc.php, (2) class.NetBSD.inc.php, (3) class.FreeBSD.inc.php, (4) class.Darwin.inc.php, (5) XPath.class.php, (6) system_header.php, or (7) system_footer.php, which reveal the path in a PHP error message.  Assigned (20050326)  None (candidate not yet proposed)    View
12076  CVE-2005-0870  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in phpSysInfo 2.3, when register_globals is enabled, allow remote attackers to inject arbitrary web script or HTML via the (1) sensor_program parameter to index.php, (2) text[language], (3) text[template], or (4) hide_picklist parameter to system_footer.php.  Assigned (20050326)  None (candidate not yet proposed)    View
12077  CVE-2005-0871  Candidate  calendar_scheduler.php in Topic Calendar 1.0.1 module for phpBB, when running on a Microsoft IIS server, allows remote attackers to obtain sensitive information via invalid parameters, which reveal the path in an error message.  Assigned (20050326)  None (candidate not yet proposed)    View

Page 19606 of 20943, showing 5 records out of 104715 total, starting on record 98026, ending on 98030

Actions