266161
|
- |
|
mantis
|
mantis
|
PHP file inclusion vulnerability in bug_sponsorship_list_view_inc.php in Mantis 1.0.0RC2 and 0.19.2 allows remote attackers to execute arbitrary PHP code and include arbitrary local files via the t_c…
|
NVD-CWE-Other
|
CVE-2005-3335
|
2017-07-11 10:33 |
2005-10-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266162
|
- |
|
dhis_tools
|
dns_package
|
DHIS tools DNS package (dhis-tools-dns) before 5.0 allows local users to overwrite arbitrary files via a symlink attack on temporary files created by (1) register-q.sh and (2) register-p.sh.
|
NVD-CWE-Other
|
CVE-2005-3341
|
2017-07-11 10:33 |
2005-12-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266163
|
- |
|
tkdiff
|
tkdiff
|
tkdiff before 4.1.1 allows local users to overwrite arbitrary files via a symlink attack on temporary files.
|
NVD-CWE-Other
|
CVE-2005-3343
|
2017-07-11 10:33 |
2005-12-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266164
|
- |
|
horde
|
horde
|
The default installation of Horde 3.0.4 contains an administrative account with a blank password, which allows remote attackers to gain access.
|
NVD-CWE-Other
|
CVE-2005-3344
|
2017-07-11 10:33 |
2005-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266165
|
- |
|
rssh
|
rssh
|
rssh 2.0.0 through 2.2.3 allows local users to bypass access restrictions and gain root privileges by using the rssh_chroot_helper command to chroot to an external directory.
|
NVD-CWE-Other
|
CVE-2005-3345
|
2017-07-11 10:33 |
2005-12-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266166
|
- |
|
osh
|
osh
|
Buffer overflow in the environment variable substitution code in main.c in OSH 1.7-14 allows local users to inject arbitrary environment variables, such as LD_PRELOAD, via pathname arguments of the f…
|
NVD-CWE-Other
|
CVE-2005-3346
|
2017-07-11 10:33 |
2005-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266167
|
- |
|
phpgroupware
|
phpgroupware
|
Multiple directory traversal vulnerabilities in index.php in phpSysInfo 2.4 and earlier, as used in phpgroupware 0.9.16 and earlier, and egrouwpware before 1.0.0.009, allow remote attackers to includ…
|
CWE-22
Path Traversal
|
CVE-2005-3347
|
2017-07-11 10:33 |
2005-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266168
|
- |
|
phpsysinfo
|
phpsysinfo
|
HTTP response splitting vulnerability in index.php in phpSysInfo 2.4 and earlier, as used in phpgroupware 0.9.16 and earlier, and egroupware before 1.0.0.009, allows remote attackers to spoof web con…
|
CWE-352
Origin Validation Error
|
CVE-2005-3348
|
2017-07-11 10:33 |
2005-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266169
|
- |
|
sylpheed
|
sylpheed
|
Stack-based buffer overflow in the ldif_get_line function in ldif.c of Sylpheed before 2.1.6 allows user-assisted attackers to execute arbitrary code by having local users import LDIF files with long…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2005-3354
|
2017-07-11 10:33 |
2005-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266170
|
- |
|
php_icalendar
|
php_icalendar
|
PHP file inclusion vulnerability in index.php in PHP iCalendar 2.0a2 through 2.0.1 allows remote attackers to execute arbitrary PHP code and include arbitrary local files via the phpicalendar cookie.…
|
NVD-CWE-Other
|
CVE-2005-3366
|
2017-07-11 10:33 |
2005-10-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|