270261
|
- |
|
chitta
|
mimicboard
|
mimicboard2 (Mimic2) 086 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for mi…
|
NVD-CWE-Other
|
CVE-2005-4859
|
2008-09-6 05:58 |
2005-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270262
|
- |
|
jasio.net
|
ragnarok_online_control_panel
|
functions.php in Ragnarok Online Control Panel (ROCP) 4.3.4a allows remote attackers to bypass authentication by requesting account_manage.php with a trailing "/login.php" PHP_SELF value, which is no…
|
CWE-287
Improper Authentication
|
CVE-2005-4861
|
2008-09-6 05:58 |
2005-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270263
|
- |
|
xwiki
|
xwiki
|
The search functionality in XWiki 0.9.793 indexes cleartext user passwords, which allows remote attackers to obtain sensitive information via a search string that matches a password.
|
CWE-255
Credentials Management
|
CVE-2005-4862
|
2008-09-6 05:58 |
2005-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270264
|
- |
|
hitachi
|
business_logic
|
Multiple SQL injection vulnerabilities in Hitachi Business Logic - Container (BLC) P-2443-9114 01-00 through 02-06 on Windows, and P-1M43-9111 01-01 through 02-00 on AIX, allow remote attackers to ex…
|
NVD-CWE-Other
|
CVE-2005-4578
|
2008-09-6 05:57 |
2005-12-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270265
|
- |
|
phpsurveyor
|
phpsurveyor
|
Multiple SQL injection vulnerabilities in PHPSurveyor before 0.991 allow remote attackers to execute arbitrary SQL commands via the (1) sql parameter in browse.php and the (2) sid, (3) lid, (4) gid, …
|
NVD-CWE-Other
|
CVE-2005-4586
|
2008-09-6 05:57 |
2005-12-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270266
|
- |
|
juniper
|
netscreen-security_manager_2004
|
Juniper NetScreen-Security Manager (NSM) 2004 FP2 and FP3 allow remote attackers to cause a denial of service (crash or hang of server components that are automatically restarted) via a long crafted …
|
NVD-CWE-Other
|
CVE-2005-4587
|
2008-09-6 05:57 |
2005-12-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270267
|
- |
|
efilego
|
efilego
|
Directory traversal vulnerability in eFileGo 3.01 allows remote attackers to execute arbitrary code, read arbitrary files, and upload arbitrary files via a ... (triple dot) in (1) the URL on port 608…
|
NVD-CWE-Other
|
CVE-2005-4622
|
2008-09-6 05:57 |
2005-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270268
|
- |
|
efilego
|
efilego
|
upload.exe in eFileGo 3.01 allows remote attackers to cause a denial of service (CPU consumption) via an argument with an invalid directory name.
|
NVD-CWE-Other
|
CVE-2005-4623
|
2008-09-6 05:57 |
2005-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270269
|
- |
|
ptnet
|
ptnet_ircd
|
The m_join function in channel.c for PTnet ircd 1.5 and 1.6 allows remote attackers to cause a denial of service (memory exhaustion that triggers a daemon restart) via a large number of requests to j…
|
NVD-CWE-Other
|
CVE-2005-4624
|
2008-09-6 05:57 |
2005-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270270
|
- |
|
3cfr
|
3cfr
|
SQL injection vulnerability in index.php in 3CFR allows remote attackers to execute arbitrary SQL commands via the LangueID parameter.
|
NVD-CWE-Other
|
CVE-2005-4645
|
2008-09-6 05:57 |
2005-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|