268591
|
- |
|
metalinks
|
metacart2
|
Multiple SQL injection vulnerabilities in MetaCart 2.0 for PayFlow allow remote attackers to execute arbitrary commands via (1) intCatalogID, (2) strSubCatalogID, or (3) strSubCatalog_NAME parameter …
|
NVD-CWE-Other
|
CVE-2005-1363
|
2016-10-18 12:19 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268592
|
- |
|
pico_server
|
pico_server
|
Pico Server (pServ) 3.2 and earlier allows remote attackers to execute arbitrary commands via a URL with multiple leading "/" (slash) characters and ".." sequences.
|
NVD-CWE-Other
|
CVE-2005-1365
|
2016-10-18 12:19 |
2005-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268593
|
- |
|
pico_server
|
pico_server
|
Pico Server (pServ) 3.2 and earlier allows remote attackers to obtain the source code for CGI scripts via "dirname/../cgi-bin" in a URL.
|
NVD-CWE-Other
|
CVE-2005-1366
|
2016-10-18 12:19 |
2005-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268594
|
- |
|
pico_server
|
pico_server
|
Pico Server (pServ) 3.2 and earlier allows local users to read arbitrary files as the pServ user via a symlink to a file outside of the web document root.
|
NVD-CWE-Other
|
CVE-2005-1367
|
2016-10-18 12:19 |
2005-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268595
|
- |
|
mandrakesoft
|
mandrake_lam-runtime
|
The LAM runtime environment package (lam-runtime-7.0.6-2mdk) on Mandrake Linux installs the mpi user without a password, which allows local users to gain privileges.
|
NVD-CWE-Other
|
CVE-2005-1379
|
2016-10-18 12:19 |
2005-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268596
|
- |
|
apple
|
safari
|
Safari 1.3 allows remote attackers to cause a denial of service (application crash) via a long https URL that triggers a NULL pointer dereference.
|
NVD-CWE-Other
|
CVE-2005-1385
|
2016-10-18 12:19 |
2005-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268597
|
- |
|
francisco_burzi
|
php-nuke
|
PHP-Nuke 7.6 and earlier allows remote attackers to obtain sensitive information via a direct request to (1) ipban.php, (2) db.php, (3) lang-norwegian.php, (4) lang-indonesian.php, (5) lang-greek.php…
|
NVD-CWE-Other
|
CVE-2005-1386
|
2016-10-18 12:19 |
2005-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268598
|
- |
|
kristofer_szymanski
|
cocktail
|
Cocktail 3.5.4 and possibly earlier in Mac OS X passes the administrative password on the command line to sudo in cleartext, which allows local users to gain sensitive information by running listing …
|
NVD-CWE-Other
|
CVE-2005-1387
|
2016-10-18 12:19 |
2005-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268599
|
- |
|
esri
|
arcinfo_workstation
|
Multiple buffer overflows in ArcGIS for ESRI ArcInfo Workstation 9.0 allow local users to execute arbitrary code via long command line arguments to (1) asmaster, (2) asuser, (3) asutility, (4) se, or…
|
NVD-CWE-Other
|
CVE-2005-1393
|
2016-10-18 12:19 |
2005-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268600
|
- |
|
rsa
|
securid_web_agent
|
Heap-based buffer overflow in RSA SecurID Web Agent 5, 5.2, and 5.3 allows remote attackers to execute arbitrary code via crafted chunked-encoding data.
|
NVD-CWE-Other
|
CVE-2005-1471
|
2016-10-18 12:19 |
2005-05-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|