266801
|
- |
|
horde
|
horde
|
The default installation of Horde 3.0.4 contains an administrative account with a blank password, which allows remote attackers to gain access.
|
NVD-CWE-Other
|
CVE-2005-3344
|
2017-07-11 10:33 |
2005-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266802
|
- |
|
rssh
|
rssh
|
rssh 2.0.0 through 2.2.3 allows local users to bypass access restrictions and gain root privileges by using the rssh_chroot_helper command to chroot to an external directory.
|
NVD-CWE-Other
|
CVE-2005-3345
|
2017-07-11 10:33 |
2005-12-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266803
|
- |
|
osh
|
osh
|
Buffer overflow in the environment variable substitution code in main.c in OSH 1.7-14 allows local users to inject arbitrary environment variables, such as LD_PRELOAD, via pathname arguments of the f…
|
NVD-CWE-Other
|
CVE-2005-3346
|
2017-07-11 10:33 |
2005-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266804
|
- |
|
phpgroupware
|
phpgroupware
|
Multiple directory traversal vulnerabilities in index.php in phpSysInfo 2.4 and earlier, as used in phpgroupware 0.9.16 and earlier, and egrouwpware before 1.0.0.009, allow remote attackers to includ…
|
CWE-22
Path Traversal
|
CVE-2005-3347
|
2017-07-11 10:33 |
2005-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266805
|
- |
|
phpsysinfo
|
phpsysinfo
|
HTTP response splitting vulnerability in index.php in phpSysInfo 2.4 and earlier, as used in phpgroupware 0.9.16 and earlier, and egroupware before 1.0.0.009, allows remote attackers to spoof web con…
|
CWE-352
Origin Validation Error
|
CVE-2005-3348
|
2017-07-11 10:33 |
2005-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266806
|
- |
|
sylpheed
|
sylpheed
|
Stack-based buffer overflow in the ldif_get_line function in ldif.c of Sylpheed before 2.1.6 allows user-assisted attackers to execute arbitrary code by having local users import LDIF files with long…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2005-3354
|
2017-07-11 10:33 |
2005-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266807
|
- |
|
php_icalendar
|
php_icalendar
|
PHP file inclusion vulnerability in index.php in PHP iCalendar 2.0a2 through 2.0.1 allows remote attackers to execute arbitrary PHP code and include arbitrary local files via the phpicalendar cookie.…
|
NVD-CWE-Other
|
CVE-2005-3366
|
2017-07-11 10:33 |
2005-10-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266808
|
- |
|
search_enhanced
|
search_enhanced
|
Cross-site scripting (XSS) vulnerability in the Search_Enhanced module in PHP-Nuke 7.9 allows remote attackers to inject arbitrary web script or HTML via the query parameter.
|
NVD-CWE-Other
|
CVE-2005-3368
|
2017-07-11 10:33 |
2005-10-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266809
|
- |
|
-
|
-
|
Multiple SQL injection vulnerabilities in the Info-DB module (info_db.php) in Woltlab Burning Board 2.7 and earlier allow remote attackers to execute arbitrary SQL commands and possibly upload files …
|
NVD-CWE-Other
|
CVE-2005-3369
|
2017-07-11 10:33 |
2005-10-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266810
|
- |
|
butterfat
|
phpesp
|
Cross-site scripting (XSS) vulnerability in phpESP 1.7.5 and earlier allows remote attackers to inject arbitrary web script or HTML via unknown vectors.
|
NVD-CWE-Other
|
CVE-2005-3406
|
2017-07-11 10:33 |
2005-11-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|