Total
210374 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2005-3422 | 1 10-4 Aps | 1 Asp Fast Forum | 2011-03-07 | 4.3 MEDIUM | N/A |
Cross-site scripting (XSS) vulnerability in error.asp in ASP Fast Forum allows remote attackers to inject arbitrary web script or HTML via the error parameter. | |||||
CVE-2005-3424 | 1 Gnu | 1 Gnump3d | 2011-03-07 | 4.3 MEDIUM | N/A |
Cross-site scripting (XSS) vulnerability in GNUMP3D before 2.9.5 allows remote attackers to inject arbitrary web script or HTML via 404 error pages, a different vulnerability than CVE-2005-3425. | |||||
CVE-2005-3468 | 1 F-secure | 2 F-secure Anti-virus, Internet Gatekeeper | 2011-03-07 | 5.0 MEDIUM | N/A |
Directory traversal vulnerability in F-Secure Anti-Virus for Microsoft Exchange 6.40 and Internet Gatekeeper 6.40 to 6.42 allows limited remote attackers to bypass Web Console authentication and read files. | |||||
CVE-2005-3471 | 1 Mailscanner | 1 Mailscanner | 2011-03-07 | 5.0 MEDIUM | N/A |
Directory traversal vulnerability in the ruleset view for MailWatch for MailScanner 1.0.2 allows remote attackers to access arbitrary files. | |||||
CVE-2005-3472 | 1 Sun | 1 Java System Communications Express | 2011-03-07 | 5.0 MEDIUM | N/A |
Unspecified vulnerability in Sun Java System Communications Express 2005Q1 and 2004Q2 allows local and remote attackers to read sensitive information from configuration files. | |||||
CVE-2005-3482 | 1 Cisco | 3 Aironet Ap1131, Aironet Ap1200, Aironet Ap1240 | 2011-03-07 | 5.0 MEDIUM | N/A |
Cisco 1200, 1131, and 1240 series Access Points, when operating in Lightweight Access Point Protocol (LWAPP) mode and controlled by 2000 and 4400 series Airespace WLAN controllers running 3.1.59.24, allow remote attackers to send unencrypted traffic to a secure network using frames with the MAC address of an authenticated end host. | |||||
CVE-2005-3500 | 1 Clam Anti-virus | 1 Clamav | 2011-03-07 | 5.0 MEDIUM | N/A |
The tnef_attachment function in tnef.c for Clam AntiVirus (ClamAV) before 0.87.1 allows remote attackers to cause a denial of service (infinite loop and memory exhaustion) via a crafted value in a CAB file that causes ClamAV to repeatedly scan the same block. | |||||
CVE-2005-3504 | 1 Ibm | 1 Aix | 2011-03-07 | 7.5 HIGH | N/A |
Buffer overflow in swcons in IBM AIX 5.2, when debug malloc is enabled, allows remote attackers to cause a core dump and possibly execute arbitrary code. | |||||
CVE-2005-3507 | 1 Cutephp | 1 Cutenews | 2011-03-07 | 5.0 MEDIUM | N/A |
Directory traversal vulnerability in CuteNews 1.4.1 allows remote attackers to include arbitrary files, execute code, and gain privileges via "../" sequences in the template parameter to (1) show_archives.php and (2) show_news.php. | |||||
CVE-2005-3509 | 1 Jportal | 1 Jportal Web Portal | 2011-03-07 | 7.5 HIGH | N/A |
Multiple SQL injection vulnerabilities in JPortal allow remote attackers to execute arbitrary SQL commands via (1) banner.php or the id parameter to (2) print.php, (3) comment.php, and (4) news.php. | |||||
CVE-2005-3531 | 1 Miklos Szeredi | 1 Fuse | 2011-03-07 | 2.1 LOW | N/A |
fusermount in FUSE before 2.4.1, if installed setuid root, allows local users to corrupt /etc/mtab and possibly modify mount options by performing a mount over a directory whose name contains certain special characters. | |||||
CVE-2005-3533 | 1 Osh | 1 Osh | 2011-03-07 | 7.2 HIGH | N/A |
Buffer overflow in OSH before 1.7-15 allows local users to execute arbitrary code via a long current working directory and filename. | |||||
CVE-2005-3572 | 1 Peel | 1 Peel | 2011-03-07 | 7.5 HIGH | N/A |
SQL injection vulnerability in index.php in Peel 2.6 through 2.7 allows remote attackers to execute arbitrary SQL commands via the rubid parameter. | |||||
CVE-2005-3574 | 1 Icms Content Management Systems | 1 Icms | 2011-03-07 | 5.0 MEDIUM | N/A |
PHP file inclusion vulnerability in index.php of iCMS allows remote attackers to include arbitrary files via the page parameter. | |||||
CVE-2005-3575 | 1 Cynox | 1 Cyphor | 2011-03-07 | 7.5 HIGH | N/A |
SQL injection vulnerability in show.php in Cyphor 0.19 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter. | |||||
CVE-2005-3580 | 1 Qdbm | 1 Qdbm | 2011-03-07 | 7.2 HIGH | N/A |
QDBM before 1.8.33-r2 allows local users in the portage group to increase privileges via a shared object in the Portage temporary build directory, which is added to the search path allowing objects in it to be loaded at runtime. | |||||
CVE-2005-3581 | 1 Gdal | 1 Gdal | 2011-03-07 | 7.2 HIGH | N/A |
GDAL before 1.3.0-r1 allows local users in the portage group to increase privileges via a shared object in the Portage temporary build directory, which is added to the search path allowing objects in it to be loaded at runtime. | |||||
CVE-2005-3582 | 1 Imagemagick | 1 Imagemagick | 2011-03-07 | 7.2 HIGH | N/A |
ImageMagick before 6.2.4.2-r1 allows local users in the portage group to increase privileges via a shared object in the Portage temporary build directory, which is added to the search path allowing objects in it to be loaded at runtime. | |||||
CVE-2005-3638 | 1 Ekinboard | 1 Ekinboard | 2011-03-07 | 4.3 MEDIUM | N/A |
Cross-site scripting (XSS) vulnerabilities in Ekinboard 1.0.3 allow remote attackers to inject arbitrary web script or HTML via the (1) id parameter in profile.php and (2) titles of posts. | |||||
CVE-2005-3639 | 1 Ubertec | 1 Help Center Live | 2011-03-07 | 7.5 HIGH | N/A |
PHP file inclusion vulnerability in the osTicket module in Help Center Live before 2.0.3 allows remote attackers to access or include arbitrary files via the file parameter, possibly due to a directory traversal vulnerability. |