270301
|
- |
|
ibm
|
websphere_application_server
|
IBM WebSphere Application Server (WAS) 5.0.2.5 through 5.1.1.3 allows remote attackers to obtain JSP source code and other sensitive information, related to incorrect request processing by the web co…
|
NVD-CWE-Other
|
CVE-2005-4834
|
2011-03-8 11:29 |
2005-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270302
|
- |
|
hitachi
|
groupmax_mail_smtp
|
Hitachi Groupmax Mail SMTP 06-50 through 06-52-/A and 07-00 through 07-20 allows remote attackers to cause a denial of service (service stop) via an e-mail message with an "invalid format."
|
NVD-CWE-Other
|
CVE-2005-4324
|
2011-03-8 11:28 |
2005-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270303
|
- |
|
university_of_arizona
|
webglimpse
|
Cross-site scripting (XSS) vulnerability in webglimpse.cgi in Webglimpse 2.14.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the ID parameter.
|
NVD-CWE-Other
|
CVE-2005-4328
|
2011-03-8 11:28 |
2005-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270304
|
- |
|
php_arena
|
pafiledb
|
SQL injection vulnerability in pafiledb.php in PHP Arena paFileDB Extreme Edition RC 5 and earlier allows remote attackers to execute arbitrary SQL commands via the (1) newsid and (2) id parameter.
|
NVD-CWE-Other
|
CVE-2005-4329
|
2011-03-8 11:28 |
2005-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270305
|
- |
|
-
|
-
|
SQL injection vulnerability in browse.ihtml in iHTML Merchant Mall allows remote attackers to execute arbitrary SQL commands via the (1) id, (2) store, and (3) step parameters.
|
NVD-CWE-Other
|
CVE-2005-4330
|
2011-03-8 11:28 |
2005-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270306
|
- |
|
ihtml_merchant
|
ihtml_merchant
|
SQL injection vulnerability in merchant.ihtml in iHTML Merchant Version 2 Pro allows remote attackers to execute arbitrary SQL commands via the (1) step, (2) id, and (3) pid parameters.
|
NVD-CWE-Other
|
CVE-2005-4331
|
2011-03-8 11:28 |
2005-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270307
|
- |
|
courseforum
|
projectforum
|
Cross-site scripting (XSS) vulnerability in ProjectForum 4.7.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) fwd parameter in admin/adminsignin.html and (2) o…
|
NVD-CWE-Other
|
CVE-2005-4336
|
2011-03-8 11:28 |
2005-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270308
|
- |
|
macromedia
|
coldfusion
|
ColdFusion Sandbox on Adobe (formerly Macromedia) ColdFusion MX 6.0, 6.1, 6.1 with JRun, and 7.0 does not throw an exception if the SecurityManager is disabled, which might allow remote attackers to …
|
NVD-CWE-Other
|
CVE-2005-4342
|
2011-03-8 11:28 |
2005-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270309
|
- |
|
macromedia
|
coldfusion
|
Adobe (formerly Macromedia) ColdFusion MX 6.0, 6.1, 6.1 with JRun, and 7.0 allows remote attackers to attach arbitrary files and send mail via a crafted Subject field, which is not properly handled b…
|
NVD-CWE-Other
|
CVE-2005-4343
|
2011-03-8 11:28 |
2005-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270310
|
- |
|
macromedia
|
coldfusion
|
Adobe (formerly Macromedia) ColdFusion MX 7.0 does not honor when the CFOBJECT /CreateObject(Java) setting is disabled, which allows local users to create an object despite the specified configuratio…
|
NVD-CWE-Other
|
CVE-2005-4344
|
2011-03-8 11:28 |
2005-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|