266681
|
- |
|
postnuke_software_foundation
|
postnuke
|
SQL injection vulnerability in modules.php in PostNuke 0.760 RC3 allows remote attackers to execute arbitrary SQL statements via the sid parameter. NOTE: the vendor reports that they could not repro…
|
NVD-CWE-Other
|
CVE-2005-1048
|
2017-07-11 10:32 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266682
|
- |
|
postnuke_software_foundation
|
postnuke
|
Multiple cross-site scripting vulnerabilities in PostNuke 0.760-RC3 allow remote attackers to inject arbitrary web script or HTML via the (1) module parameter to admin.php or (2) op parameter to user…
|
NVD-CWE-Other
|
CVE-2005-1049
|
2017-07-11 10:32 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266683
|
- |
|
postnuke_software_foundation
|
postnuke
|
The modload op in the Reviews module for PostNuke 0.760-RC3 allows remote attackers to obtain sensitive information via an invalid id parameter, which reveals the path in a PHP error message.
|
NVD-CWE-Other
|
CVE-2005-1050
|
2017-07-11 10:32 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266684
|
- |
|
microsoft
|
outlook outlook_web_access
|
Microsoft Outlook 2003 and Outlook Web Access (OWA) 2003 do not properly display comma separated addresses in the From field in an e-mail message, which could allow remote attackers to spoof e-mail a…
|
NVD-CWE-Other
|
CVE-2005-1052
|
2017-07-11 10:32 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266685
|
- |
|
moderngigabyte
|
modernbill
|
Multiple cross-site scripting (XSS) vulnerabilities in orderwiz.php in ModernBill 4.3.0 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) c_code or (2) aid paramet…
|
NVD-CWE-Other
|
CVE-2005-1053
|
2017-07-11 10:32 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266686
|
- |
|
moderngigabyte
|
modernbill
|
PHP remote file inclusion vulnerability in news.php in ModernBill 4.3.0 and earlier allows remote attackers to execute arbitrary PHP code by modifying the DIR parameter to reference a URL on a remote…
|
NVD-CWE-Other
|
CVE-2005-1054
|
2017-07-11 10:32 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266687
|
- |
|
towerblog
|
towerblog
|
TowerBlog 0.6 and earlier stores the login data file under the web root, which allows remote attackers to obtain the MD5 checksums of the username and password via a direct request to the _dat/login …
|
NVD-CWE-Other
|
CVE-2005-1055
|
2017-07-11 10:32 |
2005-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266688
|
- |
|
hp
|
openview_network_node_manager
|
Unknown vulnerability in HP OpenView Network Node Manager (NMM) 6.2 through 6.4, and 7.01 through 7.50, allows remote attackers to cause a denial of service.
|
NVD-CWE-Other
|
CVE-2005-1056
|
2017-07-11 10:32 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266689
|
- |
|
linksys
|
wet11
|
Linksys WET11 1.5.4 allows remote attackers to change the password without providing the original password via the data parameter to changepw.html.
|
NVD-CWE-Other
|
CVE-2005-1059
|
2017-07-11 10:32 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266690
|
- |
|
novell
|
netware
|
Unknown vulnerability in the TCP/IP functionality (TCPIP.NLM) in Novell Netware 6.x allows remote attackers to cause a denial of service (ABEND by Page Fault Processor Exception) via certain packets.
|
NVD-CWE-Other
|
CVE-2005-1060
|
2017-07-11 10:32 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|