CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11547  CVE-2005-0341  Candidate  Apple Safari 1.2.4 does not obey the Content-type field in the HTTP header and renders text as HTML, which allows remote attackers to inject arbitrary web script or HTML and perform cross-site scripting (XSS) attacks.  Assigned (20050210)  None (candidate not yet proposed)    View
11548  CVE-2005-0342  Candidate  The Finder in Mac OS X and earlier allows local users to overwrite arbitrary files and gain privileges by creating a hard link from the .DS_Store file to an arbitrary file.  Assigned (20050210)  None (candidate not yet proposed)    View
11549  CVE-2005-0343  Candidate  SQL injection vulnerability in PerlDesk 1.x allows remote attackers to inject arbitrary SQL commands via the view parameter.  Assigned (20050210)  None (candidate not yet proposed)    View
11550  CVE-2005-0344  Candidate  Directory traversal vulnerability in 602LAN SUITE 2004.0.04.1221 allows remote authenticated users to upload and execute arbitrary files via a .. (dot dot) in the filename parameter.  Assigned (20050210)  None (candidate not yet proposed)    View
11551  CVE-2005-0345  Candidate  viewthread.php in php-fusion 4.x does not check the (1) forum_id or (2) forum_cat parameters, which allows remote attackers to view protected forums via the thread_id parameter.  Assigned (20050210)  None (candidate not yet proposed)    View

Page 19818 of 20943, showing 5 records out of 104715 total, starting on record 99086, ending on 99090

Actions