270441
|
- |
|
-
|
-
|
MRV Communications In-Reach LX-8000S, LX-4000S, and LX-1000S 3.5.0, when using SSH public key authentication, does not properly restrict access to ports, which allows remote authenticated users to ac…
|
NVD-CWE-Other
|
CVE-2005-2329
|
2008-09-6 05:51 |
2005-07-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270442
|
- |
|
php.warpedweb.net
|
phppageprotect
|
Cross-site scripting (XSS) vulnerability in PHPPageProtect 1.0.0a allows remote attackers to inject arbitrary web script or HTML via the username parameter to (1) admin.php or (2) login.php.
|
NVD-CWE-Other
|
CVE-2005-2332
|
2008-09-6 05:51 |
2005-07-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270443
|
- |
|
y.sak
|
y.sak
|
Y.SAK allows remote attackers to execute arbitrary commands via shell metacharacters in the $no variable to (1) w_s3mbfm.cgi, (2) w_s3adix.cgi, or (3) w_s3sbfm.cgi.
|
NVD-CWE-Other
|
CVE-2005-2334
|
2008-09-6 05:51 |
2005-07-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270444
|
- |
|
msearch
|
unicode_msearch
|
Cross-site scripting (XSS) vulnerability in the Unicode version of msearch (unicode-msearch) 1.51(U1)-beta1, 1.51(U1), and 1.52(U1) allows remote attackers to inject arbitrary web script or HTML via …
|
NVD-CWE-Other
|
CVE-2005-2339
|
2008-09-6 05:51 |
2005-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270445
|
- |
|
emc
|
navisphere_manager
|
EMC Navisphere Manager 6.4.1.0.0 allows remote attackers to list arbitrary directories via an HTTP request for a directory that ends in a "." (trailing dot).
|
NVD-CWE-Other
|
CVE-2005-2358
|
2008-09-6 05:51 |
2005-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270446
|
- |
|
alwil
|
avast_antivirus
|
Directory traversal vulnerability in a third-party compression library (UNACEV2.DLL), as used in avast! Antivirus Home/Professional Edition 4.6.665 and Server Edition 4.6.460, allows remote attackers…
|
NVD-CWE-Other
|
CVE-2005-2384
|
2008-09-6 05:51 |
2005-07-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270447
|
- |
|
alwil
|
avast_antivirus
|
Buffer overflow in a third-party compression library (UNACEV2.DLL), as used in avast! Antivirus Home/Professional Edition 4.6.665 and Server Edition 4.6.460, allows remote attackers to execute arbitr…
|
NVD-CWE-Other
|
CVE-2005-2385
|
2008-09-6 05:51 |
2005-07-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270448
|
- |
|
elemental_software
|
cartwiz
|
Cross-site scripting (XSS) vulnerability in viewCart.asp in CartWIZ 1.20 allows remote attackers to inject arbitrary web script or HTML via the message parameter.
|
NVD-CWE-Other
|
CVE-2005-2386
|
2008-09-6 05:51 |
2005-07-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270449
|
- |
|
goodtech_systems
|
goodtech_smtp_server
|
Multiple stack-based buffer overflows in GoodTech SMTP server 5.16 allow remote attackers to execute arbitrary code via (1) a RCPT TO command with a long DNS name, or (2) a large number of RCPT TO co…
|
NVD-CWE-Other
|
CVE-2005-2387
|
2008-09-6 05:51 |
2005-07-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270450
|
- |
|
symantec_veritas
|
netbackup_enterprise_server netbackup_server
|
NDMP server in Veritas NetBackup 5.1 allows attackers to cause a denial of service via a CONFIG message with an out-of-range timestamp, which triggers a null dereference.
|
NVD-CWE-Other
|
CVE-2005-2389
|
2008-09-6 05:51 |
2005-07-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|