268741
|
- |
|
seth_m._knorr
|
biz_mail_form
|
CRLF injection vulnerability in bizmail.cgi in Biz Mail Form before 2.2 allows remote attackers to bypass the email check and send spam e-mail via CRLF sequences and forged mail headers in the email …
|
NVD-CWE-Other
|
CVE-2005-0493
|
2016-10-18 12:12 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268742
|
- |
|
seth_m._knorr
|
biz_mail_form
|
Upgrade to newest version.
|
NVD-CWE-Other
|
CVE-2005-0493
|
2016-10-18 12:12 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268743
|
- |
|
avaya
|
ip_office_phone_manager ip_soft_phone
|
The Avaya IP Office Phone Manager, and other products such as the IP Softphone, stores sensitive data in cleartext in a registry key, which allows local and possibly remote users to steal usernames a…
|
NVD-CWE-Other
|
CVE-2005-0506
|
2016-10-18 12:12 |
2005-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268744
|
- |
|
gd_software
|
sd_server
|
Directory traversal vulnerability in SD Server 4.0.70 and earlier allows remote attackers to read arbitrary files via .. sequences in an HTTP request.
|
NVD-CWE-Other
|
CVE-2005-0507
|
2016-10-18 12:12 |
2005-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268745
|
- |
|
microsoft mono
|
.net_framework mono
|
Multiple cross-site scripting (XSS) vulnerabilities in the Mono 1.0.5 implementation of ASP.NET (.Net) allow remote attackers to inject arbitrary HTML or web script via Unicode representations for AS…
|
NVD-CWE-Other
|
CVE-2005-0509
|
2016-10-18 12:12 |
2005-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268746
|
- |
|
jelsoft
|
vbulletin
|
misc.php for vBulletin 3.0.6 and earlier, when "Add Template Name in HTML Comments" is enabled, allows remote attackers to execute arbitrary PHP code via nested variables in the template parameter.
|
NVD-CWE-Other
|
CVE-2005-0511
|
2016-10-18 12:12 |
2005-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268747
|
- |
|
pmachine
|
pmachine_pro
|
PHP remote file inclusion vulnerability in mail_autocheck.php in the Email This Entry add-on for pMachine Pro 2.4, and possibly other versions including pMachine Free, allows remote attackers to exec…
|
NVD-CWE-Other
|
CVE-2005-0513
|
2016-10-18 12:12 |
2005-02-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268748
|
- |
|
twiki
|
imagegalleryplugin
|
The ImageGalleryPlugin (ImageGalleryPlugin.pm) in Twiki allows remote attackers to execute arbitrary commands via certain commands that generate thumbnails.
|
NVD-CWE-Other
|
CVE-2005-0516
|
2016-10-18 12:12 |
2005-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268749
|
- |
|
pblang
|
pblang
|
Multiple cross-site scripting (XSS) vulnerabilities in PBLang 4.65 allow remote attackers to inject arbitrary web script or HTML via (1) the search string to search.php, (2) the subject of a PM, whic…
|
NVD-CWE-Other
|
CVE-2005-0526
|
2016-10-18 12:12 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268750
|
- |
|
igeneric
|
free_shopping_cart
|
Multiple SQL injection vulnerabilities in page.php for iGeneric (iG) Shop 1.2 may allow remote attackers to execute arbitrary SQL statements via the (1) cats, (2) l_price, or (3) u_price parameters.
|
NVD-CWE-Other
|
CVE-2005-0537
|
2016-10-18 12:12 |
2005-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|