268751
|
- |
|
esmi
|
paypal_storefront
|
Cross-site scripting vulnerability in products1h.php in ESMI PayPal Storefront allows remote attackers to inject arbitrary web script or HTML via the id parameter.
|
NVD-CWE-Other
|
CVE-2005-0936
|
2016-10-18 12:15 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268752
|
- |
|
uapplication
|
ublog_reload
|
Ublog Reload 1.0 through 1.0.4 stores ublogreload.mdb under the web root, which allows remote attackers to read usernames and hashed passwords via a direct request to ublogreload.mdb.
|
NVD-CWE-Other
|
CVE-2005-0938
|
2016-10-18 12:15 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268753
|
- |
|
coinsoft_technologies
|
phpcoin
|
SQL injection vulnerability in phpCoin 1.2.1b and earlier allows remote attackers to execute arbitrary SQL commands via the (1) term/keywords field on the search page, (2) username or (3) e-mail fiel…
|
NVD-CWE-Other
|
CVE-2005-0946
|
2016-10-18 12:15 |
2005-03-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268754
|
- |
|
experience2
|
experience2
|
eXPerience2 allows remote attackers to obtain the full path for the web root via a direct request to modules.php without any parameters, which leaks the path in a PHP error message.
|
NVD-CWE-Other
|
CVE-2005-0722
|
2016-10-18 12:14 |
2005-03-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268755
|
- |
|
php_arena
|
pafiledb
|
Cross-site scripting (XSS) vulnerability in the jumpmenu function in functions.php for paFileDB 3.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the URL parameters, …
|
NVD-CWE-Other
|
CVE-2005-0723
|
2016-10-18 12:14 |
2005-03-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268756
|
- |
|
php_arena
|
pafiledb
|
paFileDB 3.1 and earlier allows remote attackers to obtain sensitive information via (1) an invalid str parameter to pafiledb.php, or a direct request to (2) viewall.php, (3) stats.php, (4) search.ph…
|
NVD-CWE-Other
|
CVE-2005-0724
|
2016-10-18 12:14 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268757
|
- |
|
ubbcentral
|
ubb.threads
|
SQL injection vulnerability in editpost.php in UBB.threads 6.0 allows remote attackers to execute arbitrary SQL commands via the Number parameter.
|
NVD-CWE-Other
|
CVE-2005-0726
|
2016-10-18 12:14 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268758
|
- |
|
kde conectiva gentoo redhat ubuntu
|
quanta linux kde fedora_core ubuntu_linux
|
Kommander in KDE 3.2 through KDE 3.4.0 executes data files without confirmation from the user, which allows remote attackers to execute arbitrary code.
|
NVD-CWE-Other
|
CVE-2005-0754
|
2016-10-18 12:14 |
2005-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268759
|
- |
|
goodtech_systems
|
goodtech_telnet_server
|
Buffer overflow in the administration web server for GoodTech Telnet Server 4.0 and 5.0, and possibly all versions before 5.0.7, allows remote attackers to execute arbitrary code via a long string to…
|
NVD-CWE-Other
|
CVE-2005-0768
|
2016-10-18 12:14 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268760
|
- |
|
php_arena
|
pafiledb
|
paFileDB 3.1 and earlier allows remote attackers to obtain sensitive information via a direct request to (1) auth.php, (2) login.php, (3) category.php, (4) file.php, (5) team.php, (6) license.php, (7…
|
NVD-CWE-Other
|
CVE-2005-0780
|
2016-10-18 12:14 |
2005-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|