264891
|
- |
|
php_gift_registry
|
phpgiftreg
|
Multiple SQL injection vulnerabilities in index.php in PHP Gift Registry (phpGiftReg) 1.4.0, and possibly other versions before 1.5.0b1, allow remote attackers to execute arbitrary SQL commands via t…
|
NVD-CWE-Other
|
CVE-2005-0292
|
2017-07-11 10:32 |
2005-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264892
|
- |
|
minis
|
minis
|
Directory traversal vulnerability in minis.php in Minis 0.2.1 allows remote attackers to read arbitrary files via a .. (dot dot) in the month parameter.
|
NVD-CWE-Other
|
CVE-2005-0293
|
2017-07-11 10:32 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264893
|
- |
|
minis
|
minis
|
minis.php in Minis 0.2.1 allows remote attackers to cause a denial of service (infinite loop) via an HTTP request for a file that the web server does not have permission to read, as demonstrated usin…
|
NVD-CWE-Other
|
CVE-2005-0294
|
2017-07-11 10:32 |
2005-01-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264894
|
- |
|
inca
|
nprotect_gameguard
|
npptnt2.sys in nProtect Gameguard provides unrestricted I/O to any process that calls it, which allows local users to gain privileges.
|
NVD-CWE-Other
|
CVE-2005-0295
|
2017-07-11 10:32 |
2005-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264895
|
- |
|
oracle
|
database_server
|
The DIRECTORY objects in Oracle 8i through Oracle 10g contain the location of a specific operating system directory, which allows users with read privileges to a DIRECTORY object to obtain sensitive …
|
NVD-CWE-Other
|
CVE-2005-0298
|
2017-07-11 10:32 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264896
|
- |
|
gforge
|
gforge
|
Directory traversal vulnerability in GForge 3.3 and earlier allows remote attackers to list arbitrary directories via a .. (dot dot) in the (1) dir parameter to controller.php or (2) dir_name paramet…
|
NVD-CWE-Other
|
CVE-2005-0299
|
2017-07-11 10:32 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264897
|
- |
|
jsboard
|
jsboard
|
Directory traversal vulnerability in session.php in JSBoard 2.0.9 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the table parameter.
|
NVD-CWE-Other
|
CVE-2005-0300
|
2017-07-11 10:32 |
2005-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264898
|
- |
|
comersus_open_technologies
|
comersus_backoffice_lite
|
comersus_backoffice_install10.asp in BackOffice Lite 6.0 and 6.01 allows remote attackers to bypass authentication and gain privileges via a direct request to the program.
|
NVD-CWE-Other
|
CVE-2005-0301
|
2017-07-11 10:32 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264899
|
- |
|
comersus_open_technologies
|
comersus_backoffice_lite
|
SQL injection vulnerability in default.asp in BackOffice Lite 6.0 and 6.01 allows remote attackers to execute arbitrary SQL commands via the referer field in the HTTP header.
|
NVD-CWE-Other
|
CVE-2005-0302
|
2017-07-11 10:32 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264900
|
- |
|
comersus_open_technologies
|
comersus_backoffice_lite
|
Multiple cross-site scripting (XSS) vulnerabilities in (1) comersus_supportError.asp or (2) comersus_backofficelite_supportError.asp in BackOffice Lite 6.0 and 6.01 allow remote attackers to inject a…
|
NVD-CWE-Other
|
CVE-2005-0303
|
2017-07-11 10:32 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|