266461
|
- |
|
naxtor
|
shopping_cart
|
shop_display_products.php in Naxtor Shopping Cart 1.0 allows remote attackers to obtain sensitive information via a cat_id with a "'" (single quote), which reveals the path in an error message, possi…
|
NVD-CWE-Other
|
CVE-2005-2477
|
2017-07-11 10:32 |
2005-08-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266462
|
- |
|
silver-scripts
|
silvernews
|
SQL injection vulnerability in SilverNews 2.0.3 allows remote attackers to execute arbitrary SQL commands via the user field on the login page in the Admin control panel.
|
NVD-CWE-Other
|
CVE-2005-2478
|
2017-07-11 10:32 |
2005-08-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266463
|
- |
|
macromedia
|
coldfusion_fusebox
|
Cross-site scripting (XSS) vulnerability in ColdFusion Fusebox 4.1.0 allows remote attackers to inject arbitrary web script or HTML via the fuseaction parameter, which is not quoted in an error page,…
|
NVD-CWE-Other
|
CVE-2005-2480
|
2017-07-11 10:32 |
2005-08-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266464
|
- |
|
churchinfo
|
churchinfo
|
ChurchInfo allows remote attackers to execute obtain sensitive information via the PersonID parameter to (1) PersonView.php, (2) MemberRoleChange.php, (3) PropertyAssign.php, (4) WhyCameEditor.php, (…
|
NVD-CWE-Other
|
CVE-2005-2474
|
2017-07-11 10:32 |
2005-08-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266465
|
- |
|
metasploit
|
metasploit_framework
|
The StateToOptions function in msfweb in Metasploit Framework 2.4 and earlier, when running with the -D option (defanged mode), allows attackers to modify temporary environment variables before the "…
|
NVD-CWE-Other
|
CVE-2005-2482
|
2017-07-11 10:32 |
2005-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266466
|
- |
|
karrigell
|
karrigell
|
Eval injection vulnerability in Karrigell before 2.1.8 allows remote attackers to execute arbitrary Python code via modified arguments to a Karrigell services (.ks) script, which can reference functi…
|
NVD-CWE-Other
|
CVE-2005-2483
|
2017-07-11 10:32 |
2005-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266467
|
- |
|
denora_irc_stats
|
denora_irc_stats
|
Buffer overflow in the rdb_query function for Denora IRC Stats 1.0 might allow attackers to execute arbitrary code.
|
NVD-CWE-Other
|
CVE-2005-2484
|
2017-07-11 10:32 |
2005-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266468
|
- |
|
logicampus
|
logicampus
|
Cross-site scripting (XSS) vulnerability in the Helpdesk in Logicampus before 1.1.1 allows remote attackers to inject arbitrary web script or HTML via unknown vectors.
|
NVD-CWE-Other
|
CVE-2005-2485
|
2017-07-11 10:32 |
2005-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266469
|
- |
|
mcdata
|
intrepid_6064_director_switch intrepid_6140_director_switch sphereon_4300_fabric_switch sphereon_4500_fabric_switch
|
Unknown vulnerability in Sun McData switches and directors 4300, 4500, 6064, and 6140 before E/OS 6.0.0 may allow attackers to cause a denial of service (connectivity and array access loss) via a net…
|
NVD-CWE-Other
|
CVE-2005-2487
|
2017-07-11 10:32 |
2005-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266470
|
- |
|
web_content_management
|
web_content_management_news_system
|
Cross-site scripting (XSS) vulnerability in Web Content Management News System allows remote attackers to inject arbitrary web script or HTML via (1) the strRootpath parameter to validsession.php or …
|
NVD-CWE-Other
|
CVE-2005-2488
|
2017-07-11 10:32 |
2005-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|