VYPR

CVEs

379,470 total · page 7309 of 7,590

  • CVE-2005-3681Nov 18, 2005
    risk 0.03cvss epss 0.01

    SQL injection vulnerability in viewcat.php in XOOPS WF-Downloads module 2.05 allows remote attackers to execute arbitrary SQL commands via the list parameter.

  • CVE-2005-3682Nov 18, 2005
    risk 0.03cvss epss 0.04

    Multiple SQL injection vulnerabilities in Wizz Forum 1.20 allow remote attackers to execute arbitrary SQL commands via (1) the AuthID parameter in ForumAuthDetails.php, and the TopicID parameter in (2) ForumTopicDetails.php and (3) ForumReply.php.

  • CVE-2005-3314Nov 18, 2005
    risk 0.08cvss epss 0.66

    Stack-based buffer overflow in the IMAP daemon in Novell Netmail 3.5.2 allows remote attackers to execute arbitrary code via "long verb arguments."

  • CVE-2005-3349Nov 18, 2005
    risk 0.00cvss epss 0.00

    GNU Gnump3d before 2.9.8 allows local users to modify or delete arbitrary files via a symlink attack on the index.lok temporary file.

  • CVE-2005-3355Nov 18, 2005
    risk 0.00cvss epss 0.02

    Directory traversal vulnerability in GNU Gnump3d before 2.9.8 has unknown impact via "CGI parameters, and cookie values".

  • CVE-2005-3666Nov 18, 2005
    risk 0.00cvss epss 0.03

    Multiple unspecified format string vulnerabilities in multiple unspecified implementations of Internet Key Exchange version 1 (IKEv1) have multiple unspecified attack vectors and impacts, as demonstrated by the PROTOS ISAKMP Test Suite for IKEv1. NOTE: due to the lack of…

  • CVE-2005-3667Nov 18, 2005
    risk 0.00cvss epss 0.02

    Multiple unspecified vulnerabilities in multiple unspecified implementations of Internet Key Exchange version 1 (IKEv1) have multiple unspecified attack vectors and impacts related to denial of service, as demonstrated by the PROTOS ISAKMP Test Suite for IKEv1. NOTE: due to the…

  • CVE-2005-3668Nov 18, 2005
    risk 0.00cvss epss 0.03

    Multiple buffer overflows in multiple unspecified implementations of Internet Key Exchange version 1 (IKEv1) have multiple unspecified attack vectors and impacts related to denial of service, as demonstrated by the PROTOS ISAKMP Test Suite for IKEv1. NOTE: due to the lack of…

  • CVE-2005-3669Nov 18, 2005
    risk 0.00cvss epss 0.05

    Multiple unspecified vulnerabilities in the Internet Key Exchange version 1 (IKEv1) implementation in multiple Cisco products allow remote attackers to cause a denial of service (device reset) via certain malformed IKE packets, as demonstrated by the PROTOS ISAKMP Test Suite for…

  • CVE-2005-3670Nov 18, 2005
    risk 0.01cvss epss 0.09

    Multiple unspecified vulnerabilities in the Internet Key Exchange version 1 (IKEv1) implementation in HP HP-UX B.11.00, B.11.11, and B.11.23 running IPSec, HP Jetdirect 635n IPv6/IPsec Print Server, and HP Tru64 UNIX 5.1B-3 and 5.1B-2/PK4, allow remote attackers to cause a…

  • CVE-2005-3671Nov 18, 2005
    risk 0.01cvss epss 0.07

    The Internet Key Exchange version 1 (IKEv1) implementation in Openswan 2 (openswan-2) before 2.4.4, and freeswan in SUSE LINUX 9.1 before 2.04_1.5.4-1.23, allow remote attackers to cause a denial of service via (1) a crafted packet using 3DES with an invalid key length, or (2)…

  • CVE-2005-3672Nov 18, 2005
    risk 0.00cvss epss 0.02

    The Internet Key Exchange version 1 (IKEv1) implementation in Stonesoft StoneGate Firewall before 2.6.1 allows remote attackers to cause a denial of service via certain crafted IKE packets, as demonstrated by the PROTOS ISAKMP Test Suite for IKEv1. NOTE: due to the lack of…

  • CVE-2005-3673Nov 18, 2005
    risk 0.00cvss epss 0.05

    The Internet Key Exchange version 1 (IKEv1) implementation in Check Point products allows remote attackers to cause a denial of service via certain crafted IKE packets, as demonstrated by the PROTOS ISAKMP Test Suite for IKEv1. NOTE: due to the lack of details in the advisory,…

  • CVE-2005-3674Nov 18, 2005
    risk 0.00cvss epss 0.05

    The Internet Key Exchange version 1 (IKEv1) implementation in the libike library in Sun Solaris 9 and 10 allows remote attackers to cause a denial of service (in.iked crash) via certain crafted IKE packets, as demonstrated by the PROTOS ISAKMP Test Suite for IKEv1. NOTE: due to…

  • CVE-2005-3663Nov 18, 2005
    risk 0.00cvss epss 0.00

    Unquoted Windows search path vulnerability in Kaspersky Anti-Virus 5.0 might allow local users to gain privileges via a malicious "program.exe" file in the C: folder.

  • CVE-2005-3664Nov 18, 2005
    risk 0.00cvss epss 0.04

    Heap-based buffer overflow in Kaspersky Anti-Virus Engine, as used in Kaspersky Personal 5.0.227, Anti-Virus On-Demand Scanner for Linux 5.0.5, and F-Secure Anti-Virus for Linux 4.50 allows remote attackers to execute arbitrary code via a crafted CHM file.

  • CVE-2005-1925Nov 18, 2005
    risk 0.00cvss epss 0.03

    Multiple directory traversal vulnerabilities in Tikiwiki before 1.9.1 allow remote attackers to read arbitrary files and execute commands via (1) the suck_url parameter to tiki-editpage.php or (2) language parameter to tiki-user_preferences.php.

  • CVE-2005-2929Nov 18, 2005
    risk 0.00cvss epss 0.05

    Lynx 2.8.5, and other versions before 2.8.6dev.15, allows remote attackers to execute arbitrary commands via (1) lynxcgi:, (2) lynxexec, and (3) lynxprog links, which are not properly restricted in the default configuration in some environments.

  • CVE-2005-2936Nov 18, 2005
    risk 0.00cvss epss 0.03

    Unquoted Windows search path vulnerability in RealNetworks RealPlayer 10.5 6.0.12.1040 through 6.0.12.1348, RealPlayer 10, RealOne Player v2, RealOne Player v1, and RealPlayer 8 before 20060322 might allow local users to gain privileges via a malicious C:\program.exe file.

  • CVE-2005-2938Nov 18, 2005
    risk 0.00cvss epss 0.00

    Unquoted Windows search path vulnerability in iTunesHelper.exe in iTunes 4.7.1.30 and iTunes 5 for Windows might allow local users to gain privileges via a malicious C:\program.exe file.

  • CVE-2005-2939Nov 18, 2005
    risk 0.00cvss epss 0.00

    Unquoted Windows search path vulnerability in VMWare Workstation 5.0.0 build-13124 might allow local users to gain privileges via a malicious "program.exe" file in the C: folder.

  • CVE-2005-2940Nov 18, 2005
    risk 0.00cvss epss 0.02

    Unquoted Windows search path vulnerability in Microsoft Antispyware 1.0.509 (Beta 1) might allow local users to gain privileges via a malicious "program.exe" file in the C: folder, involving the programs (1) GIANTAntiSpywareMain.exe, (2) gcASNotice.exe, (3) gcasServ.exe, (4)…

  • CVE-2005-2975Nov 18, 2005
    risk 0.00cvss epss 0.04

    io-xpm.c in the gdk-pixbuf XPM image rendering library in GTK+ before 2.8.7 allows attackers to cause a denial of service (infinite loop) via a crafted XPM image with a large number of colors.

  • CVE-2005-2976Nov 18, 2005
    risk 0.00cvss epss 0.05

    Integer overflow in io-xpm.c in gdk-pixbuf 0.22.0 in GTK+ before 2.8.7 allows attackers to cause a denial of service (crash) or execute arbitrary code via an XPM file with large height, width, and colour values, a different vulnerability than CVE-2005-3186.

  • CVE-2005-3116Nov 18, 2005
    risk 0.05cvss epss 0.28

    Stack-based buffer overflow in a shared library as used by the Volume Manager daemon (vmd) in VERITAS NetBackup Enterprise Server 5.0 MP1 to MP5 and 5.1 up to MP3A allows remote attackers to execute arbitrary code via a crafted packet.

  • CVE-2005-3186Nov 18, 2005
    risk 0.00cvss epss 0.05

    Integer overflow in the GTK+ gdk-pixbuf XPM image rendering library in GTK+ 2.4.0 allows attackers to execute arbitrary code via an XPM file with a number of colors that causes insufficient memory to be allocated, which leads to a heap-based buffer overflow.

  • CVE-2005-3189Nov 18, 2005
    risk 0.03cvss epss 0.06

    Directory traversal vulnerability in Qualcomm WorldMail IMAP Server allows remote attackers to read arbitrary email messages via ".." sequences in the SELECT command.

  • CVE-2005-3347Nov 18, 2005
    risk 0.00cvss epss 0.04

    Multiple directory traversal vulnerabilities in index.php in phpSysInfo 2.4 and earlier, as used in phpgroupware 0.9.16 and earlier, and egrouwpware before 1.0.0.009, allow remote attackers to include arbitrary files via .. (dot dot) sequences in the (1) sensor_program parameter…

  • CVE-2005-3348Nov 18, 2005
    risk 0.00cvss epss 0.02

    HTTP response splitting vulnerability in index.php in phpSysInfo 2.4 and earlier, as used in phpgroupware 0.9.16 and earlier, and egroupware before 1.0.0.009, allows remote attackers to spoof web content and poison web caches via CRLF sequences in the charset parameter.

  • CVE-2005-3662Nov 18, 2005
    risk 0.00cvss epss 0.01

    Off-by-one buffer overflow in pnmtopng before 2.39, when using the -alpha command line option (Alphas_Of_Color), allows attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted PNM file with exactly 256 colors.

  • CVE-2005-3644Nov 17, 2005
    risk 0.06cvss epss 0.42

    PNP_GetDeviceList (upnp_getdevicelist) in UPnP for Microsoft Windows 2000 SP4 and earlier, and possibly Windows XP SP1 and earlier, allows remote attackers to cause a denial of service (memory consumption) via a DCE RPC request that specifies a large output buffer size, a…

  • CVE-2005-3645Nov 17, 2005
    risk 0.00cvss epss 0.02

    phpAdsNew and phpPgAds 2.0.6 and possibly earlier versions allows remote attackers to obtain the application installation path and other sensitive information via direct requests to (1) create.php, and if display_errors is enabled, (2) lib-updates.inc.php, (3)…

  • CVE-2005-3646Nov 17, 2005
    risk 0.00cvss epss 0.02

    Multiple SQL injection vulnerabilities in lib-sessions.inc.php in phpAdsNew and phpPgAds 2.0.6 and possibly earlier versions allow remote attackers to execute arbitrary SQL commands via the sessionID parameter in (1) logout.php and (2) index.php.

  • CVE-2005-3647Nov 17, 2005
    risk 0.00cvss epss 0.00

    Folder Guard allows local users to bypass protections by running from or installing to the temporary files directory.

  • CVE-2005-3648Nov 17, 2005
    risk 0.00cvss epss 0.03

    Multiple SQL injection vulnerabilities in the get_record function in datalib.php in Moodle 1.5.2 allow remote attackers to execute arbitrary SQL commands via the id parameter in (1) category.php and (2) info.php.

  • CVE-2005-3649Nov 17, 2005
    risk 0.00cvss epss 0.03

    jumpto.php in Moodle 1.5.2 allows remote attackers to redirect users to other sites via the jump parameter.

  • CVE-2005-3650Nov 17, 2005
    risk 0.01cvss epss 0.06

    The CodeSupport.ocx ActiveX control, as used by Sony to uninstall the First4Internet XCP DRM, has "safe for scripting" enabled, which allows remote attackers to execute arbitrary code by calling vulnerable functions such as RebootMachine, IsAdministrator, and ExecuteCode.

  • CVE-2005-3633Nov 16, 2005
    risk 0.00cvss epss 0.02

    HTTP response splitting vulnerability in frameset.htm in SAP Web Application Server (WAS) 6.10 through 7.00 allows remote attackers to inject arbitrary HTML headers via the sap-exiturl parameter.

  • CVE-2005-3634Nov 16, 2005
    risk 0.04cvss epss 0.18

    frameset.htm in the BSP runtime in SAP Web Application Server (WAS) 6.10 through 7.00 allows remote attackers to log users out and redirect them to arbitrary web sites via a close command in the sap-sessioncmd parameter and a URL in the sap-exiturl parameter.

  • CVE-2005-3635Nov 16, 2005
    risk 0.03cvss epss 0.05

    Multiple cross-site scripting (XSS) vulnerabilities in SAP Web Application Server (WAS) 6.10 through 7.00 allow remote attackers to inject arbitrary web script or HTML via (1) the sap-syscmd in sap-syscmd and (2) the BspApplication field in the SYSTEM PUBLIC test application.

  • CVE-2005-3636Nov 16, 2005
    risk 0.03cvss epss 0.05

    Cross-site scripting (XSS) vulnerability in SAP Web Application Server (WAS) 6.10 allows remote attackers to inject arbitrary web script or HTML via Error Pages.

  • CVE-2005-3638Nov 16, 2005
    risk 0.03cvss epss 0.02

    Cross-site scripting (XSS) vulnerabilities in Ekinboard 1.0.3 allow remote attackers to inject arbitrary web script or HTML via the (1) id parameter in profile.php and (2) titles of posts.

  • CVE-2005-3639Nov 16, 2005
    risk 0.03cvss epss 0.03

    PHP file inclusion vulnerability in the osTicket module in Help Center Live before 2.0.3 allows remote attackers to access or include arbitrary files via the file parameter, possibly due to a directory traversal vulnerability.

  • CVE-2005-3640Nov 16, 2005
    risk 0.04cvss epss 0.09

    Multiple buffer overflows in the IMAP Groupware Mail server of Floosietek FTGate (FTGate4) 4.1 allow remote attackers to execute arbitrary code via long arguments to various IMAP commands, as demonstrated with the EXAMINE command.

  • CVE-2005-3641Nov 16, 2005
    risk 0.00cvss epss 0.05

    Oracle Databases running on Windows XP with Simple File Sharing enabled, allows remote attackers to bypass authentication by supplying a valid username.

  • CVE-2005-3642Nov 16, 2005
    risk 0.00cvss epss 0.01

    IBM Informix Dynamic Database server running on Windows XP with Simple File Sharing enabled, allows remote attackers to bypass authentication and log on to the guest account by supplying an invalid username.

  • CVE-2005-3643Nov 16, 2005
    risk 0.00cvss epss 0.01

    IBM DB2 Database server running on Windows XP with Simple File Sharing enabled, allows remote attackers to bypass authentication and log on to the guest account without supplying a password.

  • CVE-2005-3621Nov 16, 2005
    risk 0.00cvss epss 0.02

    CRLF injection vulnerability in phpMyAdmin before 2.6.4-pl4 allows remote attackers to conduct HTTP response splitting attacks via unspecified scripts.

  • CVE-2005-3622Nov 16, 2005
    risk 0.00cvss epss 0.02

    phpMyAdmin 2.7.0-beta1 and earlier allows remote attackers to obtain the full path of the server via direct requests to multiple scripts in the libraries directory.

  • CVE-2005-2659Nov 16, 2005
    risk 0.00cvss epss 0.02

    Buffer overflow in the LZX decompression in CHM Lib (chmlib) 0.35, as used in products such as KchmViewer, has unknown impact and attack vectors.