CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11717  CVE-2005-0511  Candidate  misc.php for vBulletin 3.0.6 and earlier, when "Add Template Name in HTML Comments" is enabled, allows remote attackers to execute arbitrary PHP code via nested variables in the template parameter.  Assigned (20050223)  None (candidate not yet proposed)    View
11718  CVE-2005-0512  Candidate  PHP remote file inclusion vulnerability in Tar.php in Mambo 4.5.2 allows remote attackers to execute arbitrary PHP code by modifying the mosConfig_absolute_path parameter to reference a URL on a remote web server that contains the code, a different vulnerability than CVE-2004-1693.  Assigned (20050223)  None (candidate not yet proposed)    View
11719  CVE-2005-0513  Candidate  PHP remote file inclusion vulnerability in mail_autocheck.php in the Email This Entry add-on for pMachine Pro 2.4, and possibly other versions including pMachine Free, allows remote attackers to execute arbitrary PHP code by directly requesting mail_autocheck.php and modifying the pm_path parameter to reference a URL on a remote web server that contains the code, a different vulnerability than CVE-2003-1086.  Assigned (20050223)  None (candidate not yet proposed)    View
11720  CVE-2005-0514  Candidate  Cross-site scripting (XSS) vulnerability in Verity Ultraseek before 5.3.3 allows remote attackers to inject arbitrary HTML and web script via search parameters.  Assigned (20050223)  None (candidate not yet proposed)    View
11721  CVE-2005-0515  Candidate  Smc.exe in My Firewall Plus 5.0 build 1117, and possibly other versions, does not drop privileges before launching the Log Viewer export functionality, which allows local users to corrupt arbitrary files by saving log files.  Assigned (20050223)  None (candidate not yet proposed)    View

Page 19714 of 20943, showing 5 records out of 104715 total, starting on record 98566, ending on 98570

Actions