CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11813  CVE-2005-0607  Candidate  CubeCart 2.0.0 through 2.0.5 allows remote attackers to determine the full path of the server via direct calls without parameters to (1) information.php, (2) language.php, (3) list_docs.php, (4) popular_prod.php, (5) sale.php, (6) subfooter.inc.php, (7) subheader.inc.php, (8) cat_navi.php, or (9) check_sum.php, which reveals the path in a PHP error message.  Assigned (20050301)  None (candidate not yet proposed)    View
11814  CVE-2005-0608  Candidate  Heap-based buffer overflow in server.cpp for WebMod 0.47 allows remote attackers to cause a denial of service (crash) and execute arbitrary code via a POST request with a Content-Length that is less than the amount of data that is actually sent.  Assigned (20050301)  None (candidate not yet proposed)    View
11815  CVE-2005-0609  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20050301)  None (candidate not yet proposed)    View
11816  CVE-2005-0610  Candidate  Multiple symlink vulnerabilities in portupgrade before 20041226_2 in FreeBSD allow local users to (1) overwrite arbitrary files and possibly replace packages to execute arbitrary code via pkg_fetch, (2) overwrite arbitrary files via temporary files when portupgrade upgrades a port or package, or (3) create arbitrary zero-byte files via the pkgdb.fixme temporary file.  Assigned (20050301)  None (candidate not yet proposed)    View
11787  CVE-2005-0581  Candidate  Multiple buffer overflows in Computer Associates (CA) License Client and Server 0.1.0.15 allow remote attackers to execute arbitrary code via (1) certain long fields in the Checksum item in a GCR request, (2) a long IP address, hostname, or netmask values in a GCR request, (3) a long last parameter in a GETCONFIG packet, or (4) long values in a request with an invalid format.  Assigned (20050228)  None (candidate not yet proposed)    View

Page 19689 of 20943, showing 5 records out of 104715 total, starting on record 98441, ending on 98445

Actions