Total
210374 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2005-3002 | 1 Xclusive-software | 1 Mccs | 2011-03-07 | 5.0 MEDIUM | N/A |
Multi-Computer Control System (MCCS) 1.0 allows remote attackers to cause a denial of service via a malformed UDP packet. | |||||
CVE-2005-3042 | 2 Usermin, Webmin | 2 Usermin, Webmin | 2011-03-07 | 7.5 HIGH | N/A |
miniserv.pl in Webmin before 1.230 and Usermin before 1.160, when "full PAM conversations" is enabled, allows remote attackers to bypass authentication by spoofing session IDs via certain metacharacters (line feed or carriage return). | |||||
CVE-2005-3066 | 1 Scriptsolutions | 1 Perldiver | 2011-03-07 | 4.3 MEDIUM | N/A |
Cross-site scripting (XSS) vulnerability in perldiver.pl in PerlDiver 1.x allows remote attackers to inject arbitrary web script or HTML via the query string. NOTE: this issue was originally disputed by the vendor, but it has since been acknowledged. | |||||
CVE-2005-3067 | 1 Scriptsolutions | 1 Perldiver | 2011-03-07 | 4.3 MEDIUM | N/A |
Cross-site scripting (XSS) vulnerability in perldiver.cgi in PerlDiver 2.x allows remote attackers to inject arbitrary web script or HTML via the module parameter. | |||||
CVE-2005-3098 | 1 Qualcomm | 1 Qpopper | 2011-03-07 | 4.6 MEDIUM | N/A |
poppassd in Qualcomm qpopper 4.0.8 allows local users to modify arbitrary files and gain privileges via the -t (trace file) command line argument. | |||||
CVE-2005-3118 | 1 William Stearns | 1 Mason | 2011-03-07 | 7.5 HIGH | N/A |
Mason before 1.0.0 does not install the init script after the user uses Mason to configure a firewall, which causes the system to run without a firewall after a reboot. | |||||
CVE-2005-3123 | 1 Gnu | 1 Gnump3d | 2011-03-07 | 5.0 MEDIUM | N/A |
Directory traversal vulnerability in GNUMP3D before 2.9.6 allows remote attackers to read arbitrary files via crafted sequences such as "/.//..//////././", which is collapsed into "/.././" after ".." and "//" sequences are removed. | |||||
CVE-2005-3124 | 1 Acme Labs | 1 Thttpd | 2011-03-07 | 2.1 LOW | N/A |
syslogtocern in Acme thttpd before 2.23 allows local users to write arbitrary files via a symlink attack on a temporary file. | |||||
CVE-2005-3149 | 1 Uim | 1 Uim | 2011-03-07 | 4.6 MEDIUM | N/A |
Uim 0.4.x before 0.4.9.1 and 0.5.0 and earlier does not properly handle the LIBUIM_VANILLA environment variable when a suid or sgid application is linked to libuim, such as immodule for Qt, which allows local users to gain privileges. | |||||
CVE-2005-3187 | 1 Bluecoat | 1 Winproxy | 2011-03-07 | 5.0 MEDIUM | N/A |
The listening daemon in Blue Coat Systems Inc. WinProxy before 6.1a allows remote attackers to cause a denial of service (crash) via a long HTTP request that causes an out-of-bounds read. | |||||
CVE-2005-3189 | 1 Qualcomm | 1 Worldmail Imap Server | 2011-03-07 | 5.0 MEDIUM | N/A |
Directory traversal vulnerability in Qualcomm WorldMail IMAP Server allows remote attackers to read arbitrary email messages via ".." sequences in the SELECT command. | |||||
CVE-2005-2310 | 1 Nullsoft | 1 Winamp | 2011-03-07 | 9.3 HIGH | N/A |
Buffer overflow in Winamp 5.03a, 5.09 and 5.091, and other versions before 5.094, allows remote attackers to execute arbitrary code via an MP3 file with a long ID3v2 tag such as (1) ARTIST or (2) TITLE. | |||||
CVE-2005-2314 | 1 Phpsftpd | 1 Phpsftpd | 2011-03-07 | 7.5 HIGH | N/A |
inc.login.php in PHPsFTPd 0.2 through 0.4 allows remote attackers to obtain the administrator's username and password by setting the do_login parameter and performing an edit action using user.php, which causes the login check to be bypassed and leaks the password in the response. | |||||
CVE-2005-2342 | 1 Rim | 2 Blackberry Enterprise Server, Blackberry Router | 2011-03-07 | 7.8 HIGH | N/A |
Research in Motion (RIM) BlackBerry Router allows remote attackers to cause a denial of service (communication disruption) via crafted Server Routing Protocol (SRP) packets. | |||||
CVE-2005-2343 | 1 Rim | 3 Blackberry, Blackberry Desktop Manager, Blackberry Device Software | 2011-03-07 | 2.6 LOW | N/A |
Research in Motion (RIM) BlackBerry Handheld web browser for BlackBerry Handheld before 4.0.2 allows remote attackers to cause a denial of service (hang) via a Java Application Description (JAD) file with a long application name and vendor string, which prevents a browser dialog from being properly dismissed. | |||||
CVE-2005-2603 | 1 My Image Gallery | 1 My Image Gallery | 2011-03-07 | 4.3 MEDIUM | N/A |
Cross-site scripting (XSS) vulnerability in index.php for My Image Gallery (Mig ) 1.4.1 allows remote attackers to inject arbitrary web script or HTML via the (1) currDir or (2) image parameters. | |||||
CVE-2005-2604 | 1 My Image Gallery | 1 My Image Gallery | 2011-03-07 | 5.0 MEDIUM | N/A |
index.php for My Image Gallery (Mig ) 1.4.1 allows remote attackers to obtain the web server path via certain currDir and image arguments, which leaks the path in an error message. | |||||
CVE-2005-2606 | 1 Phlymail | 1 Phlymail | 2011-03-07 | 7.5 HIGH | N/A |
Unknown vulnerability in the "frontend authentication" in PHlyMail 3.02.00 has unknown impact and attack vectors. | |||||
CVE-2005-2616 | 1 Ezupload | 1 Ezupload | 2011-03-07 | 7.5 HIGH | N/A |
Multiple PHP file include vulnerabilities in ezUpload 2.2 allow remote attackers to execute arbitrary code via the path parameter to (1) initialize.php, (2) customize.php, (3) form.php, or (4) index.php. | |||||
CVE-2005-2626 | 1 Kismet | 1 Kismet | 2011-03-07 | 10.0 HIGH | N/A |
Unspecified vulnerability in Kismet before 2005-08-R1 allows remote attackers to have an unknown impact via unprintable characters in the SSID. |