CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11808  CVE-2005-0602  Candidate  Unzip 5.51 and earlier does not properly warn the user when extracting setuid or setgid files, which may allow local users to gain privileges.  Assigned (20050301)  None (candidate not yet proposed)    View
11809  CVE-2005-0603  Candidate  viewtopic.php in phpBB 2.0.12 and earlier allows remote attackers to obtain sensitive information via a highlight parameter containing invalid regular expression syntax, which reveals the path in a PHP error message.  Assigned (20050301)  None (candidate not yet proposed)    View
11810  CVE-2005-0604  Candidate  lnss.exe in GFI Languard Network Security Scanner 5.0 stores the username and password in memory in plaintext, which could allow local administrators to obtain domain administrator credentials.  Assigned (20050301)  None (candidate not yet proposed)    View
11811  CVE-2005-0605  Candidate  scan.c for LibXPM may allow attackers to execute arbitrary code via a negative bitmap_unit value that leads to a buffer overflow.  Assigned (20050301)  None (candidate not yet proposed)    View
11812  CVE-2005-0606  Candidate  Cross-site scripting (XSS) vulnerability in settings.inc.php for CubeCart 2.0.0 through 2.0.5, as used in multiple PHP files, allows remote attackers to inject arbitrary HTML or web script via the (1) cat_id, (2) PHPSESSID, (3) view_doc, (4) product, (5) session, (6) catname, (7) search, or (8) page parameters.  Assigned (20050301)  None (candidate not yet proposed)    View

Page 19688 of 20943, showing 5 records out of 104715 total, starting on record 98436, ending on 98440

Actions