270901
|
- |
|
aol
|
instant_messenger
|
AOL Instant Messenger 5.5.x and earlier allows remote attackers to cause a denial of service (client crash) via an invalid smiley icon location in the sml parameter of a font tag.
|
NVD-CWE-Other
|
CVE-2005-1655
|
2008-09-6 05:49 |
2005-05-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270902
|
- |
|
mercur
|
mercur_messaging
|
Mercur Messaging 2005 SP2 allows remote attackers to read the source code of .ctml files via a URL with a trailing hex-encoded space ("%20").
|
NVD-CWE-Other
|
CVE-2005-1656
|
2008-09-6 05:49 |
2005-05-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270903
|
- |
|
mercur
|
mercur_messaging
|
Multiple directory traversal vulnerabilities in Mercur Messaging 2005 SP2 allow remote attackers to perform unauthorized file operations via the Folder.Id parameter to (1) deletefolder.ctml, (2) dele…
|
NVD-CWE-Other
|
CVE-2005-1657
|
2008-09-6 05:49 |
2005-05-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270904
|
- |
|
myserver
|
myserver
|
Directory traversal vulnerability in filemanager.cpp in MyServer 0.8 allows remote attackers to list the parent directory of the web root via a URL with a "..." (triple dot).
|
NVD-CWE-Other
|
CVE-2005-1658
|
2008-09-6 05:49 |
2005-05-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270905
|
- |
|
-
|
-
|
Cross-site scripting (XSS) vulnerability in filemanager.cpp in MyServer 0.8 allows remote attackers to inject arbitrary Javascript via a URL with a "..." (triple dot) followed by an onmouseover even…
|
NVD-CWE-Other
|
CVE-2005-1659
|
2008-09-6 05:49 |
2005-05-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270906
|
- |
|
jeuce
|
jeuce_personal_web_server
|
Jeuce Personal Webserver 2.13 allows remote attackers to cause a denial of service (server crash) via a long GET request, possibly triggering a buffer overflow.
|
NVD-CWE-Other
|
CVE-2005-1661
|
2008-09-6 05:49 |
2005-05-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270907
|
- |
|
ubertec
|
help_center_live
|
Multiple cross-site scripting (XSS) vulnerabilities in Help Center Live allow remote attackers to inject arbitrary web script or HTML via the (1) find parameter to index.php, (2) name or (3) message …
|
NVD-CWE-Other
|
CVE-2005-1672
|
2008-09-6 05:49 |
2005-05-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270908
|
- |
|
ubertec
|
help_center_live
|
Multiple SQL injection vulnerabilities in Help Center Live allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to index.php, (2) tid parameter to view.php, fid parameter…
|
NVD-CWE-Other
|
CVE-2005-1673
|
2008-09-6 05:49 |
2005-05-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270909
|
- |
|
groove
|
groove_workspace virtual_office
|
Groove Virtual Office before 3.1 build 2338, before 3.1a build 2364, and Groove Workspace before 2.5n build 1871 installs the client installation directories with insecure EVERYBODY permissions, whic…
|
NVD-CWE-Other
|
CVE-2005-1675
|
2008-09-6 05:49 |
2005-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270910
|
- |
|
groove
|
groove_workspace virtual_office
|
Multiple cross-site scripting (XSS) vulnerabilities in Groove Mobile Workspace in Groove Virtual Office before 3.1 build 2338, before 3.1a build 2364, and Groove Workspace before 2.5n build 1871 allo…
|
NVD-CWE-Other
|
CVE-2005-1676
|
2008-09-6 05:49 |
2005-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|