268561
|
- |
|
moosegallery
|
moosegallery
|
PHP remote file inclusion vulnerability in display.php in MooseGallery allows remote attackers to execute arbitrary PHP code via the type parameter.
|
NVD-CWE-Other
|
CVE-2005-2331
|
2017-07-11 10:32 |
2005-07-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268562
|
- |
|
rim
|
blackberry_enterprise_server
|
The BlackBerry Attachment Service in Research in Motion (RIM) BlackBerry Enterprise Server (BES) 4.0 to version 4.0 Service Pack 2 allows attackers to cause a denial of service via a malformed Portab…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2005-2344
|
2017-07-11 10:32 |
2005-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268563
|
- |
|
emc
|
navisphere_manager
|
Directory traversal vulnerability in EMC Navisphere Manager 6.4.1.0.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the URL.
|
NVD-CWE-Other
|
CVE-2005-2357
|
2017-07-11 10:32 |
2005-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268564
|
- |
|
freebsd
|
freebsd
|
The AES-XCBC-MAC algorithm in IPsec in FreeBSD 5.3 and 5.4, when used for authentication without other encryption, uses a constant key instead of the one that was assigned by the system administrator…
|
NVD-CWE-Other
|
CVE-2005-2359
|
2017-07-11 10:32 |
2005-08-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268565
|
- |
|
mandrakesoft
|
mandrake_linux mandrake_linux_corporate_server
|
nss_ldap 181 to versions before 213, as used in Mandrake Corporate Server and Mandrake 10.0, and other operating systems, does not properly handle a SIGPIPE signal when sending a search request to an…
|
NVD-CWE-Other
|
CVE-2005-2377
|
2017-07-11 10:32 |
2005-07-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268566
|
- |
|
mozilla
|
firefox
|
Mozilla Firefox 1.0.4 and 1.0.5 does not choose the challenge with the strongest authentication scheme available as required by RFC2617, which might cause credentials to be sent in plaintext even if …
|
NVD-CWE-Other
|
CVE-2005-2395
|
2017-07-11 10:32 |
2005-07-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268567
|
- |
|
mediawiki
|
mediawiki
|
Cross-site scripting (XSS) vulnerability in MediaWiki 1.4.6 and earlier allows remote attackers to inject arbitrary web script or HTML via a parameter to the page move template.
|
NVD-CWE-Other
|
CVE-2005-2396
|
2017-07-11 10:32 |
2005-07-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268568
|
- |
|
gnu
|
phpbook
|
Cross-site scripting (XSS) vulnerability in guestbook.php in phpBook 1.46 allows remote attackers to inject arbitrary web script or HTML via the admin parameter.
|
NVD-CWE-Other
|
CVE-2005-2397
|
2017-07-11 10:32 |
2005-07-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268569
|
- |
|
php_surveyor
|
php_surveyor
|
Multiple SQL injection vulnerabilities in PHP Surveyor 0.98 allows remote attackers to execute arbitrary SQL commands via (1) the sid, start, and id parameters to browse.php, the sid parameter to (2)…
|
NVD-CWE-Other
|
CVE-2005-2398
|
2017-07-11 10:32 |
2005-07-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268570
|
- |
|
phpfinance
|
phpfinance
|
The inc.login.php scripts in PHPFinance 0.3 allows remote attackers to bypass the login and gain privileges.
|
NVD-CWE-Other
|
CVE-2005-2400
|
2017-07-11 10:32 |
2005-07-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|