CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
11717 | CVE-2005-0511 | Candidate | misc.php for vBulletin 3.0.6 and earlier, when "Add Template Name in HTML Comments" is enabled, allows remote attackers to execute arbitrary PHP code via nested variables in the template parameter. | Assigned (20050223) | None (candidate not yet proposed) | View | |
11718 | CVE-2005-0512 | Candidate | PHP remote file inclusion vulnerability in Tar.php in Mambo 4.5.2 allows remote attackers to execute arbitrary PHP code by modifying the mosConfig_absolute_path parameter to reference a URL on a remote web server that contains the code, a different vulnerability than CVE-2004-1693. | Assigned (20050223) | None (candidate not yet proposed) | View | |
11719 | CVE-2005-0513 | Candidate | PHP remote file inclusion vulnerability in mail_autocheck.php in the Email This Entry add-on for pMachine Pro 2.4, and possibly other versions including pMachine Free, allows remote attackers to execute arbitrary PHP code by directly requesting mail_autocheck.php and modifying the pm_path parameter to reference a URL on a remote web server that contains the code, a different vulnerability than CVE-2003-1086. | Assigned (20050223) | None (candidate not yet proposed) | View | |
11720 | CVE-2005-0514 | Candidate | Cross-site scripting (XSS) vulnerability in Verity Ultraseek before 5.3.3 allows remote attackers to inject arbitrary HTML and web script via search parameters. | Assigned (20050223) | None (candidate not yet proposed) | View | |
11721 | CVE-2005-0515 | Candidate | Smc.exe in My Firewall Plus 5.0 build 1117, and possibly other versions, does not drop privileges before launching the Log Viewer export functionality, which allows local users to corrupt arbitrary files by saving log files. | Assigned (20050223) | None (candidate not yet proposed) | View |
Page 19714 of 20943, showing 5 records out of 104715 total, starting on record 98566, ending on 98570