|
278491
|
- |
|
linux
|
linux_kernel
|
The key_user_lookup function in security/keys/key.c in Linux kernel 2.6.10 to 2.6.11.8 may allow attackers to cause a denial of service (oops) via SMP.
|
NVD-CWE-Other
|
CVE-2005-1368
|
2018-10-20 00:31 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278492
|
- |
|
linux
|
linux_kernel
|
The (1) it87 and (2) via686a drivers in I2C for Linux 2.6.x before 2.6.11.8, and 2.6.12 before 2.6.12-rc2, create the sysfs "alarms" file with write permissions, which allows local users to cause a d…
|
NVD-CWE-Other
|
CVE-2005-1369
|
2018-10-20 00:31 |
2005-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278493
|
- |
|
phpcart
|
phpcart
|
phpcart.php in PHPCart 3.2 allows remote attackers to change product price information by modifying the (1) price or (2) postage parameters. NOTE: it was later reported that 3.4 through 4.6.4 are al…
|
CWE-20
Improper Input Validation
|
CVE-2005-1398
|
2018-10-20 00:31 |
2005-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278494
|
- |
|
postgresql
|
postgresql
|
PostgreSQL 7.3.x through 8.0.x gives public EXECUTE access to certain character conversion functions, which allows unprivileged users to call those functions with malicious values, with unknown impac…
|
NVD-CWE-Other
|
CVE-2005-1409
|
2018-10-20 00:31 |
2005-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278495
|
- |
|
postgresql trustix
|
postgresql secure_linux
|
The tsearch2 module in PostgreSQL 7.4 through 8.0.x declares the (1) dex_init, (2) snb_en_init, (3) snb_ru_init, (4) spell_init, and (5) syn_init functions as "internal" even when they do not take an…
|
NVD-CWE-Other
|
CVE-2005-1410
|
2018-10-20 00:31 |
2005-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278496
|
- |
|
uapplication
|
uguestbook
|
Uapplication Uguestbook 1.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for mdb-databas…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2005-1425
|
2018-10-20 00:31 |
2005-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278497
|
- |
|
fishnet
|
fishcart
|
Multiple cross-site scripting vulnerabilities in FishCart 3.1 allow remote attackers to inject arbitrary web script or HTML via the (1) trackingnum, (2) reqagree, or (3) m parameter to upstracking.ph…
|
CWE-79
Cross-site Scripting
|
CVE-2005-1486
|
2018-10-20 00:31 |
2005-05-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278498
|
- |
|
bugada_andrea
|
php_advanced_transfer_manager
|
PHP Advanced Transfer Manager (phpATM) 1.21 allows remote attackers to upload arbitrary files via filenames containing multiple file extensions, as demonstrated using a filename ending in "php.ns", w…
|
NVD-CWE-Other
|
CVE-2005-1604
|
2018-10-20 00:31 |
2005-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278499
|
- |
|
phpheaven
|
phpmychat
|
Multiple cross-site scripting (XSS) vulnerabilities in (1) start_page.css.php3 (aka start-page.css.php3) or (2) style.css.php3 in PHPMyChat 0.14.5 allow remote attackers to inject arbitrary web scrip…
|
CWE-79
Cross-site Scripting
|
CVE-2005-1619
|
2018-10-20 00:31 |
2005-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278500
|
- |
|
gnu
|
gdb
|
Integer overflow in the Binary File Descriptor (BFD) library for gdb before 6.3, binutils, elfutils, and possibly other packages, allows user-assisted attackers to execute arbitrary code via a crafte…
|
CWE-189
Numeric Errors
|
CVE-2005-1704
|
2018-10-20 00:31 |
2005-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|