CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11991  CVE-2005-0785  Candidate  Cross-site scripting (XSS) vulnerability in usersrecentposts in YaBB 2.0 rc1 allows remote attackers to inject arbitrary web script or HTML via the username parameter.  Assigned (20050320)  None (candidate not yet proposed)    View
11992  CVE-2005-0786  Candidate  SQL injection vulnerability in gb_new.inc in SimpGB allows remote attackers to execute arbitrary SQL commands via the quote parameter to guestbook.php.  Assigned (20050320)  None (candidate not yet proposed)    View
11993  CVE-2005-0787  Candidate  Wine 20050211 and earlier creates temp files with world readable permissions and predictable file names, which allows local users to obtain sensitive information, such as passwords.  Assigned (20050320)  None (candidate not yet proposed)    View
11994  CVE-2005-0788  Candidate  LimeWire 4.1.2 through 4.5.6 allows remote attackers to read arbitrary files by specifying the full pathname in a Gnutella GET request.  Assigned (20050320)  None (candidate not yet proposed)    View
11995  CVE-2005-0789  Candidate  Directory traversal vulnerability in LimeWire 3.9.6 through 4.6.0 allows remote attackers to read arbitrary files via a .. (dot dot) in a magnet request.  Assigned (20050320)  None (candidate not yet proposed)    View

Page 19632 of 20943, showing 5 records out of 104715 total, starting on record 98156, ending on 98160

Actions