269531
|
- |
|
light_speed_technology
|
deluxeftp
|
Lightspeed DeluxeFTP 6.01 stores usernames and passwords in plaintext in sites.xml, which is world-readable, which allows local users to gain privileges.
|
NVD-CWE-Other
|
CVE-2005-1092
|
2008-09-6 05:48 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269532
|
- |
|
rebrand
|
p2p_share_spy
|
Rebrand P2P Share Spy 2.2 stores the user password in plaintext in the txtPassword value in the registry, which allows local users to gain privileges.
|
NVD-CWE-Other
|
CVE-2005-1097
|
2008-09-6 05:48 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269533
|
- |
|
mcafee
|
internet_security_suite
|
McAfee Internet Security Suite 2005 uses insecure default ACLs for installed files, which allows local users to gain privileges or disable protection by modifying certain files.
|
NVD-CWE-Other
|
CVE-2005-1107
|
2008-09-6 05:48 |
2005-04-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269534
|
- |
|
todd_miller
|
sudo
|
Sudo VISudo 1.6.8 and earlier allows local users to corrupt arbitrary files via a symlink attack on temporary files.
|
NVD-CWE-Other
|
CVE-2005-1119
|
2008-09-6 05:48 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269535
|
- |
|
avaya
|
libsafe
|
Race condition in libsafe 2.0.16 and earlier, when running in multi-threaded applications, allows attackers to bypass libsafe protection and exploit other vulnerabilities before the _libsafe_die func…
|
NVD-CWE-Other
|
CVE-2005-1125
|
2008-09-6 05:48 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269536
|
- |
|
virtual_hosting_control_system
|
virtual_hosting_control_system
|
Multiple SQL injection vulnerabilities in VHCS 2.4 and earlier allow remote attackers to execute arbitrary SQL commands via certain inputs from HTTP POST queries.
|
NVD-CWE-Other
|
CVE-2005-1128
|
2008-09-6 05:48 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269537
|
- |
|
symantec_veritas
|
i3_focalpoint_server
|
Unknown vulnerability in Veritas i3 Focalpoint Server 7.1 and earlier has unknown attack vectors and unknown but "critical" impact.
|
NVD-CWE-Other
|
CVE-2005-1131
|
2008-09-6 05:48 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269538
|
- |
|
kerio
|
kerio_mailserver
|
Unknown vulnerability in WebMail in Kerio MailServer before 6.0.9 allows remote attackers to cause a denial of service (CPU consumption) via certain e-mail messages.
|
NVD-CWE-Other
|
CVE-2005-1138
|
2008-09-6 05:48 |
2005-04-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269539
|
- |
|
mywebland
|
mybloggie
|
Cross-site scripting (XSS) vulnerability in myBloggie 2.1.1 allows remote attackers to inject arbitrary web script or HTML via the comments.
|
NVD-CWE-Other
|
CVE-2005-1140
|
2008-09-6 05:48 |
2005-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269540
|
- |
|
easyphpcalendar
|
easyphpcalendar
|
Cross-site scripting (XSS) vulnerability in index.php in EasyPHPCalendar before 6.2.8 allows remote attackers to inject arbitrary web script or HTML via the yr parameter.
|
NVD-CWE-Other
|
CVE-2005-1143
|
2008-09-6 05:48 |
2005-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|