268261
|
- |
|
oscommerce
|
oscommerce
|
Cross-site scripting (XSS) vulnerability in contact_us.php in osCommerce 2.2-MS2 allows remote attackers to inject arbitrary web script or HTML via the enquiry parameter.
|
NVD-CWE-Other
|
CVE-2005-0458
|
2016-10-18 12:11 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268262
|
- |
|
alt-n
|
webadmin
|
useredit_account.wdm in Alt-N WebAdmin 3.0.4 does not properly validate account edits by the logged in user, which allows remote authenticated users to edit other users' account information via a mod…
|
NVD-CWE-Other
|
CVE-2005-0318
|
2016-10-18 12:10 |
2005-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268263
|
- |
|
oracle
|
database_server
|
SQL injection vulnerability in Oracle Database 9i and 10g allows remote attackers to execute arbitrary SQL commands and gain privileges.
|
NVD-CWE-Other
|
CVE-2005-0297
|
2016-10-18 12:09 |
2005-01-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268264
|
- |
|
squid
|
squid
|
Squid 2.5, when processing the configuration file, parses empty Access Control Lists (ACLs), including proxy_auth ACLs without defined auth schemes, in a way that effectively removes arguments, which…
|
NVD-CWE-Other
|
CVE-2005-0194
|
2016-10-18 12:08 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268265
|
- |
|
sun compaq
|
rte sdk tru64
|
The Software Development Kit (SDK) and Run Time Environment (RTE) 1.4.1 and 1.4.2 for Tru64 UNIX allows remote attackers to cause a denial of service (Java Virtual Machine hang) via object deserializ…
|
NVD-CWE-Other
|
CVE-2005-0223
|
2016-10-18 12:08 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268266
|
- |
|
hp
|
virtualvault
|
Unknown vulnerability in HP-UX B.11.04 running Virtualvault 4.5 through 4.7, when running the TGA daemon, allows remote attackers to cause a denial of service via certain network traffic.
|
NVD-CWE-Other
|
CVE-2005-0224
|
2016-10-18 12:08 |
2005-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268267
|
- |
|
ngircd
|
ngircd
|
Format string vulnerability in the Log_Resolver function in log.c for ngIRCd 0.8.2 and earlier, when compiled with IDENT, logging to SYSLOG, and with DEBUG enabled, allows remote attackers to execute…
|
NVD-CWE-Other
|
CVE-2005-0226
|
2016-10-18 12:08 |
2005-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268268
|
- |
|
nissc
|
ipsec
|
Certain configurations of IPsec, when using Encapsulating Security Payload (ESP) in tunnel mode, integrity protection at a higher layer, or Authentication Header (AH), allow remote attackers to decry…
|
NVD-CWE-Other
|
CVE-2005-0039
|
2016-10-18 12:07 |
2005-05-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268269
|
- |
|
dotnetnuke
|
dotnetnuke
|
Multiple cross-site scripting (XSS) vulnerabilities in DotNetNuke before 3.0.12 allow remote attackers to inject arbitrary web script or HTML via the (1) register a new user page, (2) User-Agent, or …
|
NVD-CWE-Other
|
CVE-2005-0040
|
2016-10-18 12:07 |
2005-05-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268270
|
- |
|
gnu ubuntu
|
mailman ubuntu_linux
|
The 55_options_traceback.dpatch patch for mailman 2.1.5 in Ubuntu 4.10 displays a different error message depending on whether the e-mail address is subscribed to a private list, which allows remote …
|
NVD-CWE-Other
|
CVE-2005-0080
|
2016-10-18 12:07 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|