266891
|
- |
|
dhis_tools
|
dns_package
|
DHIS tools DNS package (dhis-tools-dns) before 5.0 allows local users to overwrite arbitrary files via a symlink attack on temporary files created by (1) register-q.sh and (2) register-p.sh.
|
NVD-CWE-Other
|
CVE-2005-3341
|
2017-07-11 10:33 |
2005-12-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266892
|
- |
|
tkdiff
|
tkdiff
|
tkdiff before 4.1.1 allows local users to overwrite arbitrary files via a symlink attack on temporary files.
|
NVD-CWE-Other
|
CVE-2005-3343
|
2017-07-11 10:33 |
2005-12-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266893
|
- |
|
horde
|
horde
|
The default installation of Horde 3.0.4 contains an administrative account with a blank password, which allows remote attackers to gain access.
|
NVD-CWE-Other
|
CVE-2005-3344
|
2017-07-11 10:33 |
2005-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266894
|
- |
|
rssh
|
rssh
|
rssh 2.0.0 through 2.2.3 allows local users to bypass access restrictions and gain root privileges by using the rssh_chroot_helper command to chroot to an external directory.
|
NVD-CWE-Other
|
CVE-2005-3345
|
2017-07-11 10:33 |
2005-12-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266895
|
- |
|
osh
|
osh
|
Buffer overflow in the environment variable substitution code in main.c in OSH 1.7-14 allows local users to inject arbitrary environment variables, such as LD_PRELOAD, via pathname arguments of the f…
|
NVD-CWE-Other
|
CVE-2005-3346
|
2017-07-11 10:33 |
2005-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266896
|
- |
|
phpgroupware
|
phpgroupware
|
Multiple directory traversal vulnerabilities in index.php in phpSysInfo 2.4 and earlier, as used in phpgroupware 0.9.16 and earlier, and egrouwpware before 1.0.0.009, allow remote attackers to includ…
|
CWE-22
Path Traversal
|
CVE-2005-3347
|
2017-07-11 10:33 |
2005-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266897
|
- |
|
phpsysinfo
|
phpsysinfo
|
HTTP response splitting vulnerability in index.php in phpSysInfo 2.4 and earlier, as used in phpgroupware 0.9.16 and earlier, and egroupware before 1.0.0.009, allows remote attackers to spoof web con…
|
CWE-352
Origin Validation Error
|
CVE-2005-3348
|
2017-07-11 10:33 |
2005-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266898
|
- |
|
sylpheed
|
sylpheed
|
Stack-based buffer overflow in the ldif_get_line function in ldif.c of Sylpheed before 2.1.6 allows user-assisted attackers to execute arbitrary code by having local users import LDIF files with long…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2005-3354
|
2017-07-11 10:33 |
2005-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266899
|
- |
|
php_icalendar
|
php_icalendar
|
PHP file inclusion vulnerability in index.php in PHP iCalendar 2.0a2 through 2.0.1 allows remote attackers to execute arbitrary PHP code and include arbitrary local files via the phpicalendar cookie.…
|
NVD-CWE-Other
|
CVE-2005-3366
|
2017-07-11 10:33 |
2005-10-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266900
|
- |
|
search_enhanced
|
search_enhanced
|
Cross-site scripting (XSS) vulnerability in the Search_Enhanced module in PHP-Nuke 7.9 allows remote attackers to inject arbitrary web script or HTML via the query parameter.
|
NVD-CWE-Other
|
CVE-2005-3368
|
2017-07-11 10:33 |
2005-10-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|