271121
|
- |
|
mercur
|
mercur_messaging
|
Mercur Messaging 2005 SP2 allows remote attackers to read the source code of .ctml files via a URL with a trailing hex-encoded space ("%20").
|
NVD-CWE-Other
|
CVE-2005-1656
|
2008-09-6 05:49 |
2005-05-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271122
|
- |
|
mercur
|
mercur_messaging
|
Multiple directory traversal vulnerabilities in Mercur Messaging 2005 SP2 allow remote attackers to perform unauthorized file operations via the Folder.Id parameter to (1) deletefolder.ctml, (2) dele…
|
NVD-CWE-Other
|
CVE-2005-1657
|
2008-09-6 05:49 |
2005-05-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271123
|
- |
|
myserver
|
myserver
|
Directory traversal vulnerability in filemanager.cpp in MyServer 0.8 allows remote attackers to list the parent directory of the web root via a URL with a "..." (triple dot).
|
NVD-CWE-Other
|
CVE-2005-1658
|
2008-09-6 05:49 |
2005-05-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271124
|
- |
|
-
|
-
|
Cross-site scripting (XSS) vulnerability in filemanager.cpp in MyServer 0.8 allows remote attackers to inject arbitrary Javascript via a URL with a "..." (triple dot) followed by an onmouseover even…
|
NVD-CWE-Other
|
CVE-2005-1659
|
2008-09-6 05:49 |
2005-05-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271125
|
- |
|
jeuce
|
jeuce_personal_web_server
|
Jeuce Personal Webserver 2.13 allows remote attackers to cause a denial of service (server crash) via a long GET request, possibly triggering a buffer overflow.
|
NVD-CWE-Other
|
CVE-2005-1661
|
2008-09-6 05:49 |
2005-05-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271126
|
- |
|
ubertec
|
help_center_live
|
Multiple cross-site scripting (XSS) vulnerabilities in Help Center Live allow remote attackers to inject arbitrary web script or HTML via the (1) find parameter to index.php, (2) name or (3) message …
|
NVD-CWE-Other
|
CVE-2005-1672
|
2008-09-6 05:49 |
2005-05-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271127
|
- |
|
ubertec
|
help_center_live
|
Multiple SQL injection vulnerabilities in Help Center Live allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to index.php, (2) tid parameter to view.php, fid parameter…
|
NVD-CWE-Other
|
CVE-2005-1673
|
2008-09-6 05:49 |
2005-05-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271128
|
- |
|
groove
|
groove_workspace virtual_office
|
Groove Virtual Office before 3.1 build 2338, before 3.1a build 2364, and Groove Workspace before 2.5n build 1871 installs the client installation directories with insecure EVERYBODY permissions, whic…
|
NVD-CWE-Other
|
CVE-2005-1675
|
2008-09-6 05:49 |
2005-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271129
|
- |
|
groove
|
groove_workspace virtual_office
|
Multiple cross-site scripting (XSS) vulnerabilities in Groove Mobile Workspace in Groove Virtual Office before 3.1 build 2338, before 3.1a build 2364, and Groove Workspace before 2.5n build 1871 allo…
|
NVD-CWE-Other
|
CVE-2005-1676
|
2008-09-6 05:49 |
2005-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271130
|
- |
|
groove
|
groove_workspace virtual_office
|
Unknown vulnerability in Groove Virtual Office before 3.1 build 2338, before 3.1a build 2364, and Groove Workspace before 2.5n build 1871 allows remote attackers to bypass restrictions on COM objects.
|
NVD-CWE-Other
|
CVE-2005-1677
|
2008-09-6 05:49 |
2005-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|