267911
|
- |
|
yahoo
|
messenger
|
The YMSGR URL handler in Yahoo! Messenger 5.x through 6.0 allows remote attackers to cause a denial of service (disconnect) via a room login or a room join request packet with a third : (colon) and a…
|
NVD-CWE-Other
|
CVE-2005-1618
|
2016-10-18 12:21 |
2005-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267912
|
- |
|
soren_boysen
|
skull-splitter_guestbook
|
Cross-site scripting (XSS) vulnerability in Skull-Splitter Guestbook 1.0, 2.0 and 2.2 allows remote attackers to inject arbitrary web script or HTML via the (1) title or (2) content of a message.
|
NVD-CWE-Other
|
CVE-2005-1620
|
2016-10-18 12:21 |
2005-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267913
|
- |
|
postnuke_software_foundation
|
postnuke
|
Directory traversal vulnerability in the pnModFunc function in pnMod.php for PostNuke 0.750 through 0.760rc4 allows remote attackers to read arbitrary files via a .. (dot dot) in the func parameter t…
|
NVD-CWE-Other
|
CVE-2005-1621
|
2016-10-18 12:21 |
2005-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267914
|
- |
|
metalinks
|
metacart_e-shop
|
Cross-site scripting (XSS) vulnerability in productsByCategory.asp in MetaCart e-Shop allows remote attackers to inject arbitrary web script or HTML via the strCatalog_NAME parameter.
|
NVD-CWE-Other
|
CVE-2005-1622
|
2016-10-18 12:21 |
2005-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267915
|
- |
|
jgs-xa
|
jgs-portal
|
Multiple SQL injection vulnerabilities in JGS-XA JGS-Portal 3.0.2 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) anzahl_beitraege parameter to jgs_portal.php, 2) yea…
|
NVD-CWE-Other
|
CVE-2005-1633
|
2016-10-18 12:21 |
2005-05-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267916
|
- |
|
jgs-xa
|
jgs-portal
|
Multiple cross-site scripting (XSS) vulnerabilities in JGS-XA JGS-Portal 3.0.2 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) anzahl_beitraege parameter to jgs_…
|
NVD-CWE-Other
|
CVE-2005-1634
|
2016-10-18 12:21 |
2005-05-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267917
|
- |
|
jgs-xa
|
jgs-portal
|
JGS-XA JGS-Portal 3.0.2 and earlier allows remote attackers to obtain the full server path via direct requests to (1) jgs_portal_ref.php, (2) jgs_portal_land.php, (3) jgs_portal_log.php, (4) jgs_port…
|
NVD-CWE-Other
|
CVE-2005-1635
|
2016-10-18 12:21 |
2005-05-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267918
|
- |
|
yahoo
|
messenger
|
The Logfile feature in Yahoo! Messenger 5.x through 6.0 can be activated by a YMSGR: URL and writes all output to a single ypager.log file, even when there are multiple users, and does not properly w…
|
NVD-CWE-Other
|
CVE-2005-1671
|
2016-10-18 12:21 |
2005-05-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267919
|
- |
|
timo_rossi
|
picasm
|
Stack-based buffer overflow in the error directive in picasm 1.12b and earlier allows attackers to execute arbitrary code via a long error message.
|
NVD-CWE-Other
|
CVE-2005-1679
|
2016-10-18 12:21 |
2005-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267920
|
- |
|
d-link
|
dsl-502t dsl-504t dsl-562t dsl-g604t
|
D-Link DSL-502T, DSL-504T, DSL-562T, and DSL-G604T, when /cgi-bin/firmwarecfg is executed, allows remote attackers to bypass authentication (1) if their IP address already exists in /var/tmp/fw_ip or…
|
NVD-CWE-Other
|
CVE-2005-1680
|
2016-10-18 12:21 |
2005-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|