CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11660  CVE-2005-0454  Candidate  Multiple SQL injection vulnerabilities in DCP-Portal 6.1.1 and earlier allow remote attackers to execute arbitrary SQL commands via (1) the lcat, doc, or uid parameters to index.php, or (2) the mid or bid parameters to forums.php.  Assigned (20050216)  None (candidate not yet proposed)    View
11661  CVE-2005-0455  Candidate  Stack-based buffer overflow in the CSmil1Parser::testAttributeFailed function in smlparse.cpp for RealNetworks RealPlayer 10.5 (6.0.12.1056 and earlier), 10, 8, and RealOne Player V2 and V1 allows remote attackers to execute arbitrary code via a .SMIL file with a large system-screen-size value.  Assigned (20050216)  None (candidate not yet proposed)    View
11624  CVE-2005-0418  Candidate  Argument injection vulnerability in Java Web Start for J2SE 1.4.2 up to 1.4.2_06, on Mac OS X, allows untrusted applications to gain privileges via the value parameter of a property tag in a JNLP file. NOTE: it is highly likely that this item will be MERGED with CVE-2005-0836.  Assigned (20050215)  None (candidate not yet proposed)    View
11625  CVE-2005-0419  Candidate  Multiple heap-based buffer overflows in 3Com 3CServer allow remote authenticated users to execute arbitrary code via long FTP commands, as demonstrated using the STAT command.  Assigned (20050215)  None (candidate not yet proposed)    View
11626  CVE-2005-0420  Candidate  Microsoft Outlook Web Access (OWA), when used with Exchange, allows remote attackers to redirect users to arbitrary URLs for login via a link to the owalogon.asp application.  Assigned (20050215)  None (candidate not yet proposed)    View

Page 19773 of 20943, showing 5 records out of 104715 total, starting on record 98861, ending on 98865

Actions