CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
11808 | CVE-2005-0602 | Candidate | Unzip 5.51 and earlier does not properly warn the user when extracting setuid or setgid files, which may allow local users to gain privileges. | Assigned (20050301) | None (candidate not yet proposed) | View | |
11809 | CVE-2005-0603 | Candidate | viewtopic.php in phpBB 2.0.12 and earlier allows remote attackers to obtain sensitive information via a highlight parameter containing invalid regular expression syntax, which reveals the path in a PHP error message. | Assigned (20050301) | None (candidate not yet proposed) | View | |
11810 | CVE-2005-0604 | Candidate | lnss.exe in GFI Languard Network Security Scanner 5.0 stores the username and password in memory in plaintext, which could allow local administrators to obtain domain administrator credentials. | Assigned (20050301) | None (candidate not yet proposed) | View | |
11811 | CVE-2005-0605 | Candidate | scan.c for LibXPM may allow attackers to execute arbitrary code via a negative bitmap_unit value that leads to a buffer overflow. | Assigned (20050301) | None (candidate not yet proposed) | View | |
11812 | CVE-2005-0606 | Candidate | Cross-site scripting (XSS) vulnerability in settings.inc.php for CubeCart 2.0.0 through 2.0.5, as used in multiple PHP files, allows remote attackers to inject arbitrary HTML or web script via the (1) cat_id, (2) PHPSESSID, (3) view_doc, (4) product, (5) session, (6) catname, (7) search, or (8) page parameters. | Assigned (20050301) | None (candidate not yet proposed) | View |
Page 19688 of 20943, showing 5 records out of 104715 total, starting on record 98436, ending on 98440