CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12093  CVE-2005-0887  Candidate  Eval injection vulnerability in Double Choco Latte before 0.9.4.3 allows remote attackers to execute arbitrary PHP code via the menuAction variable in (1) functions.inc.php or (2) main.php, which causes code to be injected into an eval statement.  Assigned (20050326)  None (candidate not yet proposed)    View
12094  CVE-2005-0888  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in functions.inc.php for Double Choco Latte 0.9.4.3 allow remote attackers to inject arbitrary web script or HTML via the (1) class or (2) method name.  Assigned (20050326)  None (candidate not yet proposed)    View
12095  CVE-2005-0889  Candidate  Cross-site scripting (XSS) vulnerability in index.php for Dream4 Koobi CMS 4.2.3 allows remote attackers to inject arbitrary web script or HTML via the area parameter.  Assigned (20050326)  None (candidate not yet proposed)    View
12096  CVE-2005-0890  Candidate  SQL injection vulnerability in Dream4 Koobi CMS 4.2.3 allows remote attackers to execute arbitrary SQL commands via the area parameter.  Assigned (20050326)  None (candidate not yet proposed)    View
6003  CVE-2002-1619  Candidate  Buffer overflow in the FC client for IBM AIX 4.3.x allows remote attackers to cause a denial of service (crash and core dump).  Assigned (20050326)  None (candidate not yet proposed)    View

Page 19610 of 20943, showing 5 records out of 104715 total, starting on record 98046, ending on 98050

Actions