270931
|
- |
|
glen_campbell
|
siteframe
|
PHP remote file inclusion vulnerability in web/classes.php in Siteframe before 3.2.2 allows remote attackers to execute arbitrary PHP code via a URL in the LOCAL_PATH parameter, a different vulnerabi…
|
NVD-CWE-Other
|
CVE-2005-4824
|
2008-09-6 05:57 |
2005-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270932
|
- |
|
claymore_systems_inc
|
puretls
|
PureTLS before 0.9b5 does not clear optional Extensions and Algorithm.Parameters values before parsing, which might trigger an information leak of values from earlier certificates.
|
NVD-CWE-Other
|
CVE-2005-4839
|
2008-09-6 05:57 |
2005-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270933
|
- |
|
spey
|
spey
|
Format string vulnerability in Logger.cc for Spey 0.3.3 allows attackers to cause a denial of service (crash) and possibly execute arbitrary code via format string specifiers in a syslog call.
|
CWE-20
Improper Input Validation
|
CVE-2005-4846
|
2008-09-6 05:57 |
2005-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270934
|
- |
|
appfluent_technology
|
database_ids
|
Buffer overflow in Appfluent Technology Database IDS 2.0 allows local users to execute arbitrary code via a long APPFLUENT_HOME environment variable.
|
NVD-CWE-Other
|
CVE-2005-4076
|
2008-09-6 05:56 |
2005-12-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270935
|
- |
|
realnetworks
|
realplayer
|
** UNVERIFIABLE, PRERELEASE ** NOTE: this issue describes a problem that can not be independently verified as of 20051208. Unspecified vulnerability in unspecified versions of Real Networks RealPla…
|
NVD-CWE-Other
|
CVE-2005-4126
|
2008-09-6 05:56 |
2005-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270936
|
- |
|
realnetworks
|
realplayer
|
** UNVERIFIABLE, PRERELEASE ** NOTE: this issue describes a problem that can not be independently verified as of 20051208. Unspecified vulnerability in unspecified versions of Real Networks RealPla…
|
NVD-CWE-Other
|
CVE-2005-4130
|
2008-09-6 05:56 |
2005-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270937
|
- |
|
adaptive_technology_resource_centre
|
atutor
|
registration.PHP in ATutor 1.5.1 pl2 allows remote attackers to execute arbitrary SQL commands via an e-mail address that ends in a NULL character, which bypasses the PHP regular expression check. NO…
|
NVD-CWE-Other
|
CVE-2005-4155
|
2008-09-6 05:56 |
2005-12-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270938
|
- |
|
mambo
|
mambo_open_source_4.5
|
Unspecified vulnerability in Mambo 4.5 (1.0.0) through 4.5 (1.0.9), with magic_quotes_gpc disabled, allows remote attackers to read arbitrary files and possibly cause a denial of service via a query …
|
NVD-CWE-Other
|
CVE-2005-4156
|
2008-09-6 05:56 |
2005-12-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270939
|
- |
|
efiction_project
|
efiction
|
Cross-site scripting (XSS) vulnerability in eFiction 1.0 and 1.1 allows remote attackers to inject arbitrary web script or HTML via the let parameter in a viewlist action to titles.php.
|
NVD-CWE-Other
|
CVE-2005-4167
|
2008-09-6 05:56 |
2005-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270940
|
- |
|
efiction_project
|
efiction
|
Multiple SQL injection vulnerabilities in eFiction 1.0, 1.1, and 2.0 allow remote attackers to execute arbitrary SQL commands via (1) the let parameter in a viewlist action to titles.php and (2) the …
|
NVD-CWE-Other
|
CVE-2005-4168
|
2008-09-6 05:56 |
2005-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|