CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
11513 | CVE-2005-0307 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in index.php in MercuryBoard 1.1.1 allow remote attackers to inject arbitrary web script or HTML via the (1) s, (2) l, (3) a, (4) t, (5) to, or (6) re parameters. | Assigned (20050210) | None (candidate not yet proposed) | View | |
11514 | CVE-2005-0308 | Candidate | Buffer overflow in the wsprintf function in W32Dasm 8.93 and earlier allows remote attackers to execute arbitrary code via a large import or export function name. | Assigned (20050210) | None (candidate not yet proposed) | View | |
11515 | CVE-2005-0309 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in (1) index.php or (2) mod.php in Exponent 0.95 allow remote attackers to inject arbitrary web script or HTML via the module parameter. | Assigned (20050210) | None (candidate not yet proposed) | View | |
11516 | CVE-2005-0310 | Candidate | Exponent 0.95 allows remote attackers to obtain sensitive information via a direct HTTP request to (1) search.info.php, (2) permissions.info.php, (3) security.info.php, (4) formcontrol.php, or (5) file_modules.php, which reveals the path in an error message because the pathos_core_version variable is undefined. | Assigned (20050210) | None (candidate not yet proposed) | View | |
11517 | CVE-2005-0311 | Candidate | Ingate Firewall 4.1.3 and earlier does not terminate the PPTP session for an active user when the administrator disables that user from a resource, which could allow remote authenticated users to retain unauthorized access to resources. | Assigned (20050210) | None (candidate not yet proposed) | View |
Page 19829 of 20943, showing 5 records out of 104715 total, starting on record 99141, ending on 99145