|
279651
|
- |
|
blogbuddies jaws magpierss
|
blogbuddies jaws magpierss
|
Multiple cross-site scripting (XSS) vulnerabilities in MagpieRSS 7.1, as used in (a) blogBuddiesv 0.3, (b) Jaws 0.6.2, and possibly other products, allow remote attackers to inject arbitrary web scri…
|
CWE-79
Cross-site Scripting
|
CVE-2005-3955
|
2018-10-20 00:39 |
2005-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279652
|
- |
|
freewebstat
|
freewebstat
|
Multiple cross-site scripting (XSS) vulnerabilities in FreeWebStat 1.0 rev37 allow remote attackers to inject arbitrary web script or HTML via the (1) site, (2) jsref, (3) jsres, and (4) jscolor para…
|
NVD-CWE-Other
|
CVE-2005-3959
|
2018-10-20 00:39 |
2005-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279653
|
- |
|
kadu
|
kadu
|
Kadu 0.4.2 and 0.5.0pre allows remote attackers to cause a denial of service (crash or generated traffic) via a malformed message, possibly with incomplete information.
|
NVD-CWE-Other
|
CVE-2005-3960
|
2018-10-20 00:39 |
2005-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279654
|
- |
|
webcalendar
|
webcalendar
|
export_handler.php in WebCalendar 1.0.1 allows remote attackers to overwrite WebCalendar data files via a modified id parameter.
|
NVD-CWE-Other
|
CVE-2005-3961
|
2018-10-20 00:39 |
2005-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279655
|
- |
|
perl
|
perl
|
Integer overflow in the format string functionality (Perl_sv_vcatpvfn) in Perl 5.9.2 and 5.8.6 Perl allows attackers to overwrite arbitrary memory and possibly execute arbitrary code via format strin…
|
CWE-189
Numeric Errors
|
CVE-2005-3962
|
2018-10-20 00:39 |
2005-12-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279656
|
- |
|
integrated_computer_solutions
|
openmotif
|
Multiple buffer overflows in libUil (libUil.so) in OpenMotif 2.2.3, and possibly other versions, allows attackers to execute arbitrary code via the (1) diag_issue_diagnostic function in UilDiags.c an…
|
NVD-CWE-Other
|
CVE-2005-3964
|
2018-10-20 00:39 |
2005-12-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279657
|
- |
|
drupal
|
drupal
|
Multiple cross-site scripting (XSS) vulnerabilities in Drupal 4.5.0 through 4.5.5 and 4.6.0 through 4.6.3 allow remote attackers to inject arbitrary web script or HTML via various HTML tags and value…
|
NVD-CWE-Other
|
CVE-2005-3973
|
2018-10-20 00:39 |
2005-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279658
|
- |
|
drupal
|
drupal
|
Drupal 4.5.0 through 4.5.5 and 4.6.0 through 4.6.3, when running on PHP5, does not correctly enforce user privileges, which allows remote attackers to bypass the "access user profiles" permission.
|
NVD-CWE-Other
|
CVE-2005-3974
|
2018-10-20 00:39 |
2005-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279659
|
- |
|
drupal
|
drupal
|
Interpretation conflict in file.inc in Drupal 4.5.0 through 4.5.5 and 4.6.0 through 4.6.3 allows remote authenticated users to inject arbitrary web script or HTML via HTML in a file with a GIF or JPE…
|
NVD-CWE-Other
|
CVE-2005-3975
|
2018-10-20 00:39 |
2005-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279660
|
- |
|
edgewall_software
|
trac
|
SQL injection vulnerability in the ticket query module in Edgewall Trac 0.9 and possibly earlier allows remote attackers to execute arbitrary SQL commands via the group parameter.
|
NVD-CWE-Other
|
CVE-2005-3980
|
2018-10-20 00:39 |
2005-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|