266011
|
- |
|
sendcard
|
sendcard
|
SQL injection vulnerability in sendcard.php in Sendcard 3.2.3 allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
NVD-CWE-Other
|
CVE-2005-2404
|
2017-07-11 10:32 |
2005-07-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266012
|
- |
|
nbsmtp
|
nbsmtp
|
Format string vulnerability in util.c in nbsmtp 0.99 and earlier, while running in debug mode, allows remote attackers to execute arbitrary code via format string specifiers that are not properly han…
|
NVD-CWE-Other
|
CVE-2005-2409
|
2017-07-11 10:32 |
2005-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266013
|
- |
|
tdiary
|
tdiary
|
Cross-Site Request Forgery (CSRF) vulnerability in tDiary 2.1.1, and tDiary 2.0.1 and earlier, allows remote attackers to conduct actions as another user, and execute commands on the server, via a UR…
|
NVD-CWE-Other
|
CVE-2005-2411
|
2017-07-11 10:32 |
2005-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266014
|
- |
|
php_firstpost
|
php_firstpost
|
PHP remote file inclusion vulnerability in block.php in PHP FirstPost allows remote attackers to execute arbitrary PHP code via the Include parameter.
|
NVD-CWE-Other
|
CVE-2005-2412
|
2017-07-11 10:32 |
2005-08-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266015
|
- |
|
atomic_photo_album
|
atomic_photo_album
|
PHP remote file inclusion vulnerability in apa_phpinclude.inc.php in Atomic Photo Album (APA) allows remote attackers to execute arbitrary PHP code via the apa_module_basedir parameter.
|
NVD-CWE-Other
|
CVE-2005-2413
|
2017-07-11 10:32 |
2005-08-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266016
|
- |
|
xpcom
|
xpcom
|
Race condition in the xpcom library, as used by web browsers such as Firefox, Mozilla, Netscape, and Galeon, allows remote attackers to cause a denial of service (application crash) via a large HTML …
|
NVD-CWE-Other
|
CVE-2005-2414
|
2017-07-11 10:32 |
2005-08-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266017
|
- |
|
astalavista_it_engineering
|
contrexx
|
Multiple SQL injection vulnerabilities in Contrexx before 1.0.5 allow remote attackers to execute arbitrary SQL commands via the (1) value parameter to the poll module or (2) pId parameter to the gal…
|
NVD-CWE-Other
|
CVE-2005-2415
|
2017-07-11 10:32 |
2005-08-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266018
|
- |
|
astalavista_it_engineering
|
contrexx
|
Multiple cross-site scripting (XSS) vulnerabilities in Contrexx before 1.0.5 allow remote attackers to inject arbitrary web script or HTML via the (1) term parameter to the search module or (2) title…
|
NVD-CWE-Other
|
CVE-2005-2416
|
2017-07-11 10:32 |
2005-08-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266019
|
- |
|
astalavista_it_engineering
|
contrexx
|
Contrexx before 1.0.5 allows remote attackers to obtain sensitive information via a direct request to /config/version.xml.
|
NVD-CWE-Other
|
CVE-2005-2417
|
2017-07-11 10:32 |
2005-08-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266020
|
- |
|
eci_telecom
|
b-focus_router
|
B-FOCuS Router 312+ allows remote attackers to bypass authentication and gain unauthorized access via a direct request to firmwarecfg.
|
NVD-CWE-Other
|
CVE-2005-2419
|
2017-07-11 10:32 |
2005-08-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|