265951
|
- |
|
yapig
|
yapig
|
Multiple cross-site scripting (XSS) vulnerabilities in Yet Another PHP Image Gallery (YaPIG) 0.95b and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the Homepage field…
|
NVD-CWE-Other
|
CVE-2005-4799
|
2017-07-20 10:29 |
2005-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265952
|
- |
|
yapig
|
yapig
|
Successful exploitation requires that "register_globals" is enabled.
|
NVD-CWE-Other
|
CVE-2005-4799
|
2017-07-20 10:29 |
2005-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265953
|
- |
|
yapig
|
yapig
|
Direct static code injection vulnerability in Yet Another PHP Image Gallery (YaPIG) 0.95b and earlier allows remote authenticated administrators to inject arbitrary PHP code via the TestGallery param…
|
NVD-CWE-Other
|
CVE-2005-4800
|
2017-07-20 10:29 |
2005-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265954
|
- |
|
yapig
|
yapig
|
Multiple cross-site request forgery (CSRF) vulnerabilities in Yet Another PHP Image Gallery (YaPIG) 0.95b and earlier allow remote attackers to perform unauthorized actions as a logged-in user, as de…
|
NVD-CWE-Other
|
CVE-2005-4801
|
2017-07-20 10:29 |
2005-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265955
|
- |
|
sun
|
java_system_application_server
|
Unspecified vulnerability in Sun Java System Application Server Platform Edition and Enterprise Edition 8.1 2005 Q1, and Platform Edition UR1, allows remote attackers to read .jar files via unknown v…
|
NVD-CWE-Other
|
CVE-2005-4804
|
2017-07-20 10:29 |
2005-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265956
|
- |
|
mozilla
|
firefox mozilla thunderbird
|
Mozilla Firefox 1.0.1 and possibly other versions, including Mozilla and Thunderbird, allows remote attackers to spoof the URL in the Status Bar via an A HREF tag that contains a TABLE tag that conta…
|
NVD-CWE-Other
|
CVE-2005-4809
|
2017-07-20 10:29 |
2005-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265957
|
- |
|
sisco
|
ax-s4_iccp ax-s4_mms iccp_toolkit_for_mms-ease mms-ease
|
The SISCO OSI stack for Windows, as used by MMS-EASE 7.10 and earlier, AX-S4 MMS 5.01 and earlier, AX-S4 ICCP 3.0103 and earlier, and the ICCP Toolkit for MMS-EASE 4.10 and earlier, allows remote att…
|
NVD-CWE-Other
|
CVE-2005-4812
|
2017-07-20 10:29 |
2005-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265958
|
- |
|
businessobjects
|
crystal_enterprise_xi crystal_reports_server_xi crystal_reports_xi report_application_server
|
Unspecified vulnerability in Report Application Server (Crystalras.exe) before 11.0.0.1370, as used in Business Objects Crystal Reports XI, Crystal Reports Server XI, and BusinessObjects Enterprise X…
|
NVD-CWE-Other
|
CVE-2005-4813
|
2017-07-20 10:29 |
2005-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265959
|
- |
|
smartwebby
|
smart_guest_book
|
SmartWebby Smart Guest Book stores SmartGuestBook.mdb (aka the "news database") under the web document root with insufficient access control, which allows remote attackers to obtain sensitive informa…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2004-2608
|
2017-07-20 10:29 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265960
|
- |
|
symantec
|
powerquest_deploycenter
|
The stuffit.com executable on Symantec PowerQuest DeployCenter 5.5 boot disks allows local users to obtain sensitive information (an unencrypted password for a Windows domain account) via four "stuff…
|
NVD-CWE-Other
|
CVE-2004-2609
|
2017-07-20 10:29 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|