CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
11547 | CVE-2005-0341 | Candidate | Apple Safari 1.2.4 does not obey the Content-type field in the HTTP header and renders text as HTML, which allows remote attackers to inject arbitrary web script or HTML and perform cross-site scripting (XSS) attacks. | Assigned (20050210) | None (candidate not yet proposed) | View | |
11548 | CVE-2005-0342 | Candidate | The Finder in Mac OS X and earlier allows local users to overwrite arbitrary files and gain privileges by creating a hard link from the .DS_Store file to an arbitrary file. | Assigned (20050210) | None (candidate not yet proposed) | View | |
11549 | CVE-2005-0343 | Candidate | SQL injection vulnerability in PerlDesk 1.x allows remote attackers to inject arbitrary SQL commands via the view parameter. | Assigned (20050210) | None (candidate not yet proposed) | View | |
11550 | CVE-2005-0344 | Candidate | Directory traversal vulnerability in 602LAN SUITE 2004.0.04.1221 allows remote authenticated users to upload and execute arbitrary files via a .. (dot dot) in the filename parameter. | Assigned (20050210) | None (candidate not yet proposed) | View | |
11551 | CVE-2005-0345 | Candidate | viewthread.php in php-fusion 4.x does not check the (1) forum_id or (2) forum_cat parameters, which allows remote attackers to view protected forums via the thread_id parameter. | Assigned (20050210) | None (candidate not yet proposed) | View |
Page 19818 of 20943, showing 5 records out of 104715 total, starting on record 99086, ending on 99090