268711
|
- |
|
php_fusion
|
php_fusion
|
Cross-site scripting (XSS) vulnerability in setuser.php of the Digitanium addon to PHP-Fusion 5.01 allows remote attackers to inject arbitrary web script or HTML via the (1) user_name or (2) user_pas…
|
NVD-CWE-Other
|
CVE-2005-0829
|
2016-10-18 12:14 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268712
|
- |
|
gfi
|
languard_network_security_scanner
|
lnss.exe in GFI Languard Network Security Scanner 5.0 stores the username and password in memory in plaintext, which could allow local administrators to obtain domain administrator credentials.
|
NVD-CWE-Other
|
CVE-2005-0604
|
2016-10-18 12:13 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268713
|
- |
|
phpbb_group
|
phpbb
|
sessions.php in phpBB 2.0.12 and earlier allows remote attackers to gain administrator privileges via the autologinid value in a cookie.
|
NVD-CWE-Other
|
CVE-2005-0614
|
2016-10-18 12:13 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268714
|
- |
|
postnuke_software_foundation
|
postnuke
|
Multiple SQL injection vulnerabilities in (1) index.php, (2) modules.php, or (3) admin.php in PostNuke 0.760-RC2 allow remote attackers to execute arbitrary SQL code via the catid parameter.
|
NVD-CWE-Other
|
CVE-2005-0615
|
2016-10-18 12:13 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268715
|
- |
|
-
|
-
|
Multiple cross-site scripting (XSS) vulnerabilities in the Download module for PostNuke 0.750 and 0.760-RC2 allow remote attackers to inject arbitrary web script or HTML via the (1) Program name, (2)…
|
NVD-CWE-Other
|
CVE-2005-0616
|
2016-10-18 12:13 |
2005-02-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268716
|
- |
|
postnuke_software_foundation
|
postnuke
|
SQL injection vulnerability in dl-search.php in PostNuke 0.750 and 0.760-RC2 allows remote attackers to execute arbitrary SQL commands via the show parameter.
|
NVD-CWE-Other
|
CVE-2005-0617
|
2016-10-18 12:13 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268717
|
- |
|
enlight_software
|
scrapland
|
Scrapland 1.0 and earlier allows remote attackers to cause a denial of service (server termination) by triggering an error, which is treated as a fatal error by the server, as demonstrated using (1) …
|
NVD-CWE-Other
|
CVE-2005-0621
|
2016-10-18 12:13 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268718
|
- |
|
raidenhttpd
|
raidenhttpd
|
RaidenHTTPD 1.1.32, and possibly other versions before 1.1.34, allows remote attackers to view the PHP source code via an HTTP GET request for a filename with a trailing (1) . (dot) or (2) space.
|
NVD-CWE-Other
|
CVE-2005-0622
|
2016-10-18 12:13 |
2005-03-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268719
|
- |
|
raidenhttpd
|
raidenhttpd
|
Buffer overflow in RaidenHTTPD 1.1.32, and possibly other versions before 1.1.34, allows remote attackers to execute arbitrary code via a long URL.
|
NVD-CWE-Other
|
CVE-2005-0623
|
2016-10-18 12:13 |
2005-03-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268720
|
- |
|
demof
|
forumwa
|
Multiple cross-site scripting (XSS) vulnerabilities in Forumwa 1.0 allow remote attackers to inject arbitrary web script or HTML via (1) the keyword parameter in search.php or the (2) body or (3) sub…
|
NVD-CWE-Other
|
CVE-2005-0628
|
2016-10-18 12:13 |
2005-03-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|