267331
|
- |
|
avaya
|
ip_office_phone_manager ip_soft_phone
|
The Avaya IP Office Phone Manager, and other products such as the IP Softphone, stores sensitive data in cleartext in a registry key, which allows local and possibly remote users to steal usernames a…
|
NVD-CWE-Other
|
CVE-2005-0506
|
2016-10-18 12:12 |
2005-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267332
|
- |
|
gd_software
|
sd_server
|
Directory traversal vulnerability in SD Server 4.0.70 and earlier allows remote attackers to read arbitrary files via .. sequences in an HTTP request.
|
NVD-CWE-Other
|
CVE-2005-0507
|
2016-10-18 12:12 |
2005-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267333
|
- |
|
microsoft mono
|
.net_framework mono
|
Multiple cross-site scripting (XSS) vulnerabilities in the Mono 1.0.5 implementation of ASP.NET (.Net) allow remote attackers to inject arbitrary HTML or web script via Unicode representations for AS…
|
NVD-CWE-Other
|
CVE-2005-0509
|
2016-10-18 12:12 |
2005-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267334
|
- |
|
jelsoft
|
vbulletin
|
misc.php for vBulletin 3.0.6 and earlier, when "Add Template Name in HTML Comments" is enabled, allows remote attackers to execute arbitrary PHP code via nested variables in the template parameter.
|
NVD-CWE-Other
|
CVE-2005-0511
|
2016-10-18 12:12 |
2005-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267335
|
- |
|
pmachine
|
pmachine_pro
|
PHP remote file inclusion vulnerability in mail_autocheck.php in the Email This Entry add-on for pMachine Pro 2.4, and possibly other versions including pMachine Free, allows remote attackers to exec…
|
NVD-CWE-Other
|
CVE-2005-0513
|
2016-10-18 12:12 |
2005-02-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267336
|
- |
|
twiki
|
imagegalleryplugin
|
The ImageGalleryPlugin (ImageGalleryPlugin.pm) in Twiki allows remote attackers to execute arbitrary commands via certain commands that generate thumbnails.
|
NVD-CWE-Other
|
CVE-2005-0516
|
2016-10-18 12:12 |
2005-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267337
|
- |
|
pblang
|
pblang
|
Multiple cross-site scripting (XSS) vulnerabilities in PBLang 4.65 allow remote attackers to inject arbitrary web script or HTML via (1) the search string to search.php, (2) the subject of a PM, whic…
|
NVD-CWE-Other
|
CVE-2005-0526
|
2016-10-18 12:12 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267338
|
- |
|
igeneric
|
free_shopping_cart
|
Multiple SQL injection vulnerabilities in page.php for iGeneric (iG) Shop 1.2 may allow remote attackers to execute arbitrary SQL statements via the (1) cats, (2) l_price, or (3) u_price parameters.
|
NVD-CWE-Other
|
CVE-2005-0537
|
2016-10-18 12:12 |
2005-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267339
|
- |
|
cyclades
|
alterpath_manager
|
Cyclades AlterPath Manager (APM) Console Server 1.2.1 allows remote attackers to obtain sensitive information via a direct request to the /about.html page.
|
NVD-CWE-Other
|
CVE-2005-0540
|
2016-10-18 12:12 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267340
|
- |
|
cyclades
|
alterpath_manager
|
consoleConnect.jsp in Cyclades AlterPath Manager (APM) Console Server 1.2.1 allows remote attackers to connect to arbitrary consoles by modifying the consolename parameter.
|
NVD-CWE-Other
|
CVE-2005-0541
|
2016-10-18 12:12 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|