CVE List

Id CVE No. Status Description Phase Votes Comments Actions
6660  CVE-2002-2278  Candidate  Cross-site scripting (XSS) vulnerability in mod_search/index.php in PortailPHP 0.99 allows remote attackers to inject arbitrary web script or HTML via the (1) $App_Theme, (2) $Rub_Search, (3) $Rub_News, (4) $Rub_File, (5) $Rub_Liens, or (6) $Rub_Faq variables.  Assigned (20071017)  None (candidate not yet proposed)    View
6659  CVE-2002-2277  Candidate  SQL injection vulnerability in mod_search/index.php in PortailPHP 0.99 allows remote attackers to execute arbitrary SQL commands via the (1) $rech, (2) $BD_Tab_docs, (3) $BD_Tab_file, (4) $BD_Tab_liens, (5) $BD_Tab_faq, or (6) $chemin variables.  Assigned (20071017)  None (candidate not yet proposed)    View
6658  CVE-2002-2276  Candidate  Ultimate PHP Board (UPB) 1.0 allows remote attackers to view the physical path of the message board via a direct request to add.php, which leaks the path in an error message.  Assigned (20071017)  None (candidate not yet proposed)    View
6657  CVE-2002-2275  Candidate  Fortres 101 4.1 allows local users to bypass Fortres by pressing the Windows and "F" key together for 30 seconds, which opens multiple windows and eventually causes explorer.exe to crash, which then opens an unrestricted explorer.exe.  Assigned (20071017)  None (candidate not yet proposed)    View
6656  CVE-2002-2274  Candidate  akfingerd 0.5 allows local users to read arbitrary files as the akfingerd user (nobody) via a symlink attack on the .plan file.  Assigned (20071017)  None (candidate not yet proposed)    View

Page 19612 of 20943, showing 5 records out of 104715 total, starting on record 98056, ending on 98060

Actions