CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
6660 | CVE-2002-2278 | Candidate | Cross-site scripting (XSS) vulnerability in mod_search/index.php in PortailPHP 0.99 allows remote attackers to inject arbitrary web script or HTML via the (1) $App_Theme, (2) $Rub_Search, (3) $Rub_News, (4) $Rub_File, (5) $Rub_Liens, or (6) $Rub_Faq variables. | Assigned (20071017) | None (candidate not yet proposed) | View | |
6659 | CVE-2002-2277 | Candidate | SQL injection vulnerability in mod_search/index.php in PortailPHP 0.99 allows remote attackers to execute arbitrary SQL commands via the (1) $rech, (2) $BD_Tab_docs, (3) $BD_Tab_file, (4) $BD_Tab_liens, (5) $BD_Tab_faq, or (6) $chemin variables. | Assigned (20071017) | None (candidate not yet proposed) | View | |
6658 | CVE-2002-2276 | Candidate | Ultimate PHP Board (UPB) 1.0 allows remote attackers to view the physical path of the message board via a direct request to add.php, which leaks the path in an error message. | Assigned (20071017) | None (candidate not yet proposed) | View | |
6657 | CVE-2002-2275 | Candidate | Fortres 101 4.1 allows local users to bypass Fortres by pressing the Windows and "F" key together for 30 seconds, which opens multiple windows and eventually causes explorer.exe to crash, which then opens an unrestricted explorer.exe. | Assigned (20071017) | None (candidate not yet proposed) | View | |
6656 | CVE-2002-2274 | Candidate | akfingerd 0.5 allows local users to read arbitrary files as the akfingerd user (nobody) via a symlink attack on the .plan file. | Assigned (20071017) | None (candidate not yet proposed) | View |
Page 19612 of 20943, showing 5 records out of 104715 total, starting on record 98056, ending on 98060