268631
|
- |
|
phpfinance
|
phpfinance
|
The inc.login.php scripts in PHPFinance 0.3 allows remote attackers to bypass the login and gain privileges.
|
NVD-CWE-Other
|
CVE-2005-2400
|
2017-07-11 10:32 |
2005-07-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268632
|
- |
|
phpsitesearch
|
phpsitesearch
|
Cross-site scripting (XSS) vulnerability in search.php in PHPSiteSearch 1.7.7d allows remote attackers to inject arbitrary web script or HTML via the query parameter.
|
NVD-CWE-Other
|
CVE-2005-2402
|
2017-07-11 10:32 |
2005-07-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268633
|
- |
|
realchat
|
realchat
|
The login protocol in RealChat 3.5.1b does not use authentication, which allows remote attackers to log on as other users by sniffing the beginning of a chat session and replaying it via a modified u…
|
NVD-CWE-Other
|
CVE-2005-2403
|
2017-07-11 10:32 |
2005-07-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268634
|
- |
|
sendcard
|
sendcard
|
SQL injection vulnerability in sendcard.php in Sendcard 3.2.3 allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
NVD-CWE-Other
|
CVE-2005-2404
|
2017-07-11 10:32 |
2005-07-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268635
|
- |
|
nbsmtp
|
nbsmtp
|
Format string vulnerability in util.c in nbsmtp 0.99 and earlier, while running in debug mode, allows remote attackers to execute arbitrary code via format string specifiers that are not properly han…
|
NVD-CWE-Other
|
CVE-2005-2409
|
2017-07-11 10:32 |
2005-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268636
|
- |
|
tdiary
|
tdiary
|
Cross-Site Request Forgery (CSRF) vulnerability in tDiary 2.1.1, and tDiary 2.0.1 and earlier, allows remote attackers to conduct actions as another user, and execute commands on the server, via a UR…
|
NVD-CWE-Other
|
CVE-2005-2411
|
2017-07-11 10:32 |
2005-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268637
|
- |
|
php_firstpost
|
php_firstpost
|
PHP remote file inclusion vulnerability in block.php in PHP FirstPost allows remote attackers to execute arbitrary PHP code via the Include parameter.
|
NVD-CWE-Other
|
CVE-2005-2412
|
2017-07-11 10:32 |
2005-08-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268638
|
- |
|
atomic_photo_album
|
atomic_photo_album
|
PHP remote file inclusion vulnerability in apa_phpinclude.inc.php in Atomic Photo Album (APA) allows remote attackers to execute arbitrary PHP code via the apa_module_basedir parameter.
|
NVD-CWE-Other
|
CVE-2005-2413
|
2017-07-11 10:32 |
2005-08-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268639
|
- |
|
xpcom
|
xpcom
|
Race condition in the xpcom library, as used by web browsers such as Firefox, Mozilla, Netscape, and Galeon, allows remote attackers to cause a denial of service (application crash) via a large HTML …
|
NVD-CWE-Other
|
CVE-2005-2414
|
2017-07-11 10:32 |
2005-08-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268640
|
- |
|
astalavista_it_engineering
|
contrexx
|
Multiple SQL injection vulnerabilities in Contrexx before 1.0.5 allow remote attackers to execute arbitrary SQL commands via the (1) value parameter to the poll module or (2) pId parameter to the gal…
|
NVD-CWE-Other
|
CVE-2005-2415
|
2017-07-11 10:32 |
2005-08-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|