CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11860  CVE-2005-0654  Candidate  gifload.exe in GIMP 2.0.5, 2.2.3, and possibly 2.2.4 allows remote attackers or local users to cause a denial of service (application crash) via the image descriptor (1) height or (2) width fields set to zero.  Assigned (20050307)  None (candidate not yet proposed)    View
11861  CVE-2005-0655  Candidate  auraCMS 1.5 allows remote attackers to obtain sensitive information via an HTTP request with an invalid id parameter to (1) teman.php, (2) hal.php, or (3) arsip.php, which reveals the path in a PHP error message.  Assigned (20050307)  None (candidate not yet proposed)    View
11862  CVE-2005-0656  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in auraCMS 1.5 allow remote attackers to inject arbitrary web script or HTML via the (1) hits parameter to hits.php, (2) query parameter to index.php, or (3) theCount parameter to counter.php.  Assigned (20050307)  None (candidate not yet proposed)    View
11863  CVE-2005-0657  Candidate  Directory traversal vulnerability in Computalynx CProxy 3.3.x and 3.4.x through 3.4.4 allows remote attackers to read arbitrary files or cause a denial of service (application crash) via a .. (dot dot) in an HTTP request.  Assigned (20050307)  None (candidate not yet proposed)    View
11864  CVE-2005-0658  Candidate  SQL injection vulnerability in a third party extension to TYPO3 allows remote attackers to execute arbitrary SQL commands via the category_uid parameter.  Assigned (20050307)  None (candidate not yet proposed)    View

Page 19672 of 20943, showing 5 records out of 104715 total, starting on record 98356, ending on 98360

Actions