CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11746  CVE-2005-0540  Candidate  Cyclades AlterPath Manager (APM) Console Server 1.2.1 allows remote attackers to obtain sensitive information via a direct request to the /about.html page.  Assigned (20050224)  None (candidate not yet proposed)    View
11747  CVE-2005-0541  Candidate  consoleConnect.jsp in Cyclades AlterPath Manager (APM) Console Server 1.2.1 allows remote attackers to connect to arbitrary consoles by modifying the consolename parameter.  Assigned (20050224)  None (candidate not yet proposed)    View
11748  CVE-2005-0542  Candidate  saveUser.do in Cyclades AlterPath Manager (APM) Console Server 1.2.1 allows local users to gain privileges by setting the adminUser parameter to true.  Assigned (20050224)  None (candidate not yet proposed)    View
11749  CVE-2005-0543  Candidate  Cross-site scripting (XSS) vulnerability in phpMyAdmin 2.6.1 allows remote attackers to inject arbitrary HTML and web script via (1) the strServer, cfg[BgcolorOne], or strServerChoice parameters in select_server.lib.php, (2) the bg_color or row_no parameters in display_tbl_links.lib.php, the left_font_family parameter in theme_left.css.php, or the right_font_family parameter in theme_right.css.php.  Assigned (20050224)  None (candidate not yet proposed)    View
11750  CVE-2005-0544  Candidate  phpMyAdmin 2.6.1 allows remote attackers to obtain the full path of the server via direct requests to (1) sqlvalidator.lib.php, (2) sqlparser.lib.php, (3) select_theme.lib.php, (4) select_lang.lib.php, (5) relation_cleanup.lib.php, (6) header_meta_style.inc.php, (7) get_foreign.lib.php, (8) display_tbl_links.lib.php, (9) display_export.lib.php, (10) db_table_exists.lib.php, (11) charset_conversion.lib.php, (12) ufpdf.php, (13) mysqli.dbi.lib.php, (14) setup.php, or (15) cookie.auth.lib.php, which reveals the path in a PHP error message.  Assigned (20050224)  None (candidate not yet proposed)    View

Page 19713 of 20943, showing 5 records out of 104715 total, starting on record 98561, ending on 98565

Actions