269951
|
- |
|
esmi
|
paypal_storefront
|
Multiple SQL injection vulnerabilities in ESMI PayPal Storefront allow remote attackers to execute arbitrary SQL commands via the (1) idpages parameter to pages.php or the (2) id2 parameter to produc…
|
NVD-CWE-Other
|
CVE-2005-0935
|
2016-10-18 12:15 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269952
|
- |
|
esmi
|
paypal_storefront
|
Cross-site scripting vulnerability in products1h.php in ESMI PayPal Storefront allows remote attackers to inject arbitrary web script or HTML via the id parameter.
|
NVD-CWE-Other
|
CVE-2005-0936
|
2016-10-18 12:15 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269953
|
- |
|
uapplication
|
ublog_reload
|
Ublog Reload 1.0 through 1.0.4 stores ublogreload.mdb under the web root, which allows remote attackers to read usernames and hashed passwords via a direct request to ublogreload.mdb.
|
NVD-CWE-Other
|
CVE-2005-0938
|
2016-10-18 12:15 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269954
|
- |
|
coinsoft_technologies
|
phpcoin
|
SQL injection vulnerability in phpCoin 1.2.1b and earlier allows remote attackers to execute arbitrary SQL commands via the (1) term/keywords field on the search page, (2) username or (3) e-mail fiel…
|
NVD-CWE-Other
|
CVE-2005-0946
|
2016-10-18 12:15 |
2005-03-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269955
|
- |
|
experience2
|
experience2
|
eXPerience2 allows remote attackers to obtain the full path for the web root via a direct request to modules.php without any parameters, which leaks the path in a PHP error message.
|
NVD-CWE-Other
|
CVE-2005-0722
|
2016-10-18 12:14 |
2005-03-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269956
|
- |
|
php_arena
|
pafiledb
|
Cross-site scripting (XSS) vulnerability in the jumpmenu function in functions.php for paFileDB 3.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the URL parameters, …
|
NVD-CWE-Other
|
CVE-2005-0723
|
2016-10-18 12:14 |
2005-03-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269957
|
- |
|
php_arena
|
pafiledb
|
paFileDB 3.1 and earlier allows remote attackers to obtain sensitive information via (1) an invalid str parameter to pafiledb.php, or a direct request to (2) viewall.php, (3) stats.php, (4) search.ph…
|
NVD-CWE-Other
|
CVE-2005-0724
|
2016-10-18 12:14 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269958
|
- |
|
ubbcentral
|
ubb.threads
|
SQL injection vulnerability in editpost.php in UBB.threads 6.0 allows remote attackers to execute arbitrary SQL commands via the Number parameter.
|
NVD-CWE-Other
|
CVE-2005-0726
|
2016-10-18 12:14 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269959
|
- |
|
kde conectiva gentoo redhat ubuntu
|
quanta linux kde fedora_core ubuntu_linux
|
Kommander in KDE 3.2 through KDE 3.4.0 executes data files without confirmation from the user, which allows remote attackers to execute arbitrary code.
|
NVD-CWE-Other
|
CVE-2005-0754
|
2016-10-18 12:14 |
2005-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269960
|
- |
|
goodtech_systems
|
goodtech_telnet_server
|
Buffer overflow in the administration web server for GoodTech Telnet Server 4.0 and 5.0, and possibly all versions before 5.0.7, allows remote attackers to execute arbitrary code via a long string to…
|
NVD-CWE-Other
|
CVE-2005-0768
|
2016-10-18 12:14 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|