|
278591
|
- |
|
oracle
|
reports
|
Directory traversal vulnerability in Oracle Reports allows remote attackers to read arbitrary files via an absolute or relative path to the (1) CUSTOMIZE or (2) desformat parameters to rwservlet. NO…
|
CWE-22
Path Traversal
|
CVE-2005-2378
|
2018-10-20 00:32 |
2005-07-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278592
|
- |
|
cmsmadesimple
|
cms_made_simple
|
Cross-site scripting (XSS) vulnerability in index.php for CMSimple 2.4 and earlier allows remote attackers to inject arbitrary web script or HTML via the search parameter in the search function.
|
NVD-CWE-Other
|
CVE-2005-2392
|
2018-10-20 00:32 |
2005-07-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278593
|
- |
|
vbzoom
|
vbzoom
|
Multiple cross-site scripting (XSS) vulnerabilities in VBzoom allow remote attackers to inject arbitrary web script and HTML via the (1) UserName parameter to profile.php or (2) UserID parameter to l…
|
NVD-CWE-Other
|
CVE-2005-2441
|
2018-10-20 00:32 |
2005-08-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278594
|
- |
|
ibm
|
lotus_notes
|
IBM Lotus Notes 6.5.4 and 6.5.5, and 7.0.0 and 7.0.1, uses insecure default permissions (Everyone/Full Control) for the "Notes" folder and all children, which allows local users to gain privileges an…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2005-2454
|
2018-10-20 00:32 |
2005-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278595
|
- |
|
ibm
|
lotus_notes
|
Update to version 7.0.2.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2005-2454
|
2018-10-20 00:32 |
2005-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278596
|
- |
|
linux
|
linux_kernel
|
The driver for compressed ISO file systems (zisofs) in the Linux kernel before 2.6.12.5 allows local users and remote attackers to cause a denial of service (kernel crash) via a crafted compressed IS…
|
NVD-CWE-Other
|
CVE-2005-2457
|
2018-10-20 00:32 |
2005-08-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278597
|
- |
|
linux
|
linux_kernel
|
inflate.c in the zlib routines in the Linux kernel before 2.6.12.5 allows remote attackers to cause a denial of service (kernel crash) via a compressed file with "improper tables".
|
NVD-CWE-Other
|
CVE-2005-2458
|
2018-10-20 00:32 |
2005-08-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278598
|
- |
|
linux debian
|
linux_kernel debian_linux
|
The huft_build function in inflate.c in the zlib routines in the Linux kernel before 2.6.12.5 returns the wrong value, which allows remote attackers to cause a denial of service (kernel crash) via a …
|
CWE-476
NULL Pointer Dereference
|
CVE-2005-2459
|
2018-10-20 00:32 |
2005-08-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278599
|
- |
|
pablo_software_solutions
|
quick_n_easy_ftp_server
|
Quick 'n Easy FTP Server 3.0 allows remote attackers to cause a denial of service (application crash or CPU consumption) via a long USER command.
|
NVD-CWE-Other
|
CVE-2005-2479
|
2018-10-20 00:32 |
2005-08-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278600
|
- |
|
linux
|
linux_kernel
|
Stack-based buffer overflow in the sendmsg function call in the Linux kernel 2.6 before 2.6.13.1 allows local users to execute arbitrary code by calling sendmsg and modifying the message contents in …
|
NVD-CWE-Other
|
CVE-2005-2490
|
2018-10-20 00:32 |
2005-09-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|