265851
|
- |
|
log4sh
|
log4sh
|
The log4sh_readProperties function in log4sh 1.2.5 and earlier allows local users to overwrite arbitrary files via a symlink attack on predictable log4sh.$$ filenames.
|
NVD-CWE-Other
|
CVE-2005-1915
|
2011-03-8 11:23 |
2005-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265852
|
- |
|
trend_micro
|
serverprotect
|
Directory traversal vulnerability in the Crystal Report component (rptserver.asp) in Trend Micro ServerProtect Management Console 5.58, as used in Control Manager 2.5 and 3.0 and Damage Cleanup Serve…
|
NVD-CWE-Other
|
CVE-2005-1930
|
2011-03-8 11:23 |
2005-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265853
|
- |
|
3com
|
3c15100d
|
Directory traversal vulnerability in the web server for 3Com Network Supervisor 5.0.2 allows remote attackers to read arbitrary files via ".." sequences in the URL to TCP port 21700.
|
NVD-CWE-Other
|
CVE-2005-2020
|
2011-03-8 11:23 |
2005-09-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265854
|
- |
|
sun
|
iplanet_messaging_server one_messaging_server
|
Unknown vulnerability in Webmail in iPlanet Messaging Server 5.2 Patch 1 and Sun ONE Messaging Server 6.2 allows remote attackers to execute arbitrary Javascript, possibly due to a cross-site scripti…
|
NVD-CWE-noinfo CWE-79
Cross-site Scripting
|
CVE-2005-2022
|
2011-03-8 11:23 |
2005-06-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265855
|
- |
|
-
|
-
|
Multiple SQL injection vulnerabilities in Fortibus CMS 4.0.0 allow remote attackers to execute arbitrary SQL commands via (1) the username or password to logon.asp, (2) WeeklyNotesDisplay.asp, or (3)…
|
NVD-CWE-Other
|
CVE-2005-2037
|
2011-03-8 11:23 |
2005-06-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265856
|
- |
|
hp
|
version_control_repository_manager
|
HP Version Control Repository Manager (VCRM) before 2.1.1.730 does not properly handle the "@" character in a proxy password, which could allow attackers with physical access to obtain portions of th…
|
NVD-CWE-Other
|
CVE-2005-2076
|
2011-03-8 11:23 |
2005-06-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265857
|
- |
|
pavsta
|
pavsta_auto_site
|
PHP remote file inclusion vulnerability in user_check.php for Pavsta Auto Site allows remote attackers to execute arbitrary PHP code via the sitepath parameter.
|
NVD-CWE-Other
|
CVE-2005-2139
|
2011-03-8 11:23 |
2005-07-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265858
|
- |
|
the_cacti_group
|
cacti
|
config.php in Cacti 0.8.6e and earlier allows remote attackers to set the no_http_headers switch, then modify session information to gain privileges and disable the use of addslashes to conduct SQL i…
|
NVD-CWE-Other
|
CVE-2005-2149
|
2011-03-8 11:23 |
2005-07-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265859
|
- |
|
nabocorp
|
nabopoll
|
PHP remote file inclusion vulnerability in survey.inc.php for nabopoll 1.2 allows remote attackers to execute arbitrary PHP code via the path parameter.
|
NVD-CWE-Other
|
CVE-2005-2157
|
2011-03-8 11:23 |
2005-07-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265860
|
- |
|
ibm
|
tivoli_management_framework
|
The LCF component (lcfd) in IBM Tivoli Management Framework Endpoint allows remote attackers to cause a denial of service (process exit and connection loss) by connecting to LCF and ending the connec…
|
NVD-CWE-Other
|
CVE-2005-2170
|
2011-03-8 11:23 |
2005-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|