CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11513  CVE-2005-0307  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in index.php in MercuryBoard 1.1.1 allow remote attackers to inject arbitrary web script or HTML via the (1) s, (2) l, (3) a, (4) t, (5) to, or (6) re parameters.  Assigned (20050210)  None (candidate not yet proposed)    View
11514  CVE-2005-0308  Candidate  Buffer overflow in the wsprintf function in W32Dasm 8.93 and earlier allows remote attackers to execute arbitrary code via a large import or export function name.  Assigned (20050210)  None (candidate not yet proposed)    View
11515  CVE-2005-0309  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in (1) index.php or (2) mod.php in Exponent 0.95 allow remote attackers to inject arbitrary web script or HTML via the module parameter.  Assigned (20050210)  None (candidate not yet proposed)    View
11516  CVE-2005-0310  Candidate  Exponent 0.95 allows remote attackers to obtain sensitive information via a direct HTTP request to (1) search.info.php, (2) permissions.info.php, (3) security.info.php, (4) formcontrol.php, or (5) file_modules.php, which reveals the path in an error message because the pathos_core_version variable is undefined.  Assigned (20050210)  None (candidate not yet proposed)    View
11517  CVE-2005-0311  Candidate  Ingate Firewall 4.1.3 and earlier does not terminate the PPTP session for an active user when the administrator disables that user from a resource, which could allow remote authenticated users to retain unauthorized access to resources.  Assigned (20050210)  None (candidate not yet proposed)    View

Page 19829 of 20943, showing 5 records out of 104715 total, starting on record 99141, ending on 99145

Actions