CVE Feed

    Dashboard / CVE

    10
    Critical

    CVE-2005-4459

    Last Modified: 16 Apr 2026

    Heap-based buffer overflow in the NAT networking components vmnat.exe and vmnet-natd in VMWare Workstation 5.5, GSX Server 3.2, ACE 1.0.1, and Player 1.0 allows remote authenticated attackers, including guests, to execute arbitrary code via crafted (1) EPRT and (2) PORT FTP commands.

    Published: 21 Dec 2005
    5.1
    Medium

    CVE-2005-4460

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in Beehive Forum 0.6.2 and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) Name, (2) Description, and (3) Comment fields to (a) links.php and (b) links_add.php.

    Published: 21 Dec 2005
    10
    Critical

    CVE-2005-4448

    Last Modified: 16 Apr 2026

    FlatNuke 2.5.6 verifies authentication credentials based on an MD5 checksum of the admin name and the hashed password rather than the plaintext password, which allows attackers to gain privileges by obtaining the password hash (possibly via CVE-2005-2813), then calculating the credentials and including them in the secid cookie.

    Published: 21 Dec 2005
    7.5
    High

    CVE-2005-4451

    Last Modified: 16 Apr 2026

    Unspecified vulnerability in Software Distributor in HP-UX B.11.11 allows remote attackers to gain access via unspecified attack vectors.

    Published: 21 Dec 2005
    5
    Medium

    CVE-2005-4455

    Last Modified: 16 Apr 2026

    cleanhtml.pl 1.129 in LiveJournal CVS before Dec 13 2005 allows remote attackers to inject scripting languages via the XSL namespace in XML, via vectors such as customview.cgi.

    Published: 21 Dec 2005
    7.5
    High

    CVE-2005-4457

    Last Modified: 16 Apr 2026

    MailEnable Enterprise 1.1 before patch ME-10009 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via several "..." (triple dot) sequences in a UID FETCH command.

    Published: 21 Dec 2005
    4
    Medium

    CVE-2005-4449

    Last Modified: 16 Apr 2026

    verify.php in FlatNuke 2.5.6 allows remote authenticated administrators to modify arbitrary PHP files by setting the file parameter to an arbitrary file and injecting the code into the body parameter. NOTE: if a FlatNuke administrator is normally assumed to be able to modify arbitrary content, then this issue does not cross privilege boundaries and would not be a vulnerability.

    Published: 21 Dec 2005
    5
    Medium

    CVE-2005-3657

    Last Modified: 16 Apr 2026

    The ActiveX control in MCINSCTL.DLL for McAfee VirusScan Security Center does not use the IObjectSafetySiteLock API to restrict access to required domains, which allows remote attackers to create or append to arbitrary files via the StartLog and AddLog methods in the MCINSTALL.McLog object.

    Published: 21 Dec 2005
    7.5
    High

    CVE-2005-4450

    Last Modified: 16 Apr 2026

    Cross-site request forgery (CSRF) vulnerability in phpMyAdmin 2.7.0 allows remote attackers to perform unauthorized actions as a logged-in user via a link or IMG tag to server_privileges.php, as demonstrated using the dbname and checkprivs parameters. NOTE: the provenance of this issue is unknown, although third parties imply that it is related to the disclosure of CVE-2005-4349, which was labeled as SQL injection but disputed.

    Published: 21 Dec 2005
    9
    Critical

    CVE-2005-4453

    Last Modified: 16 Apr 2026

    UserProfile.cs in Ultraapps Issue Manager before 2.1 allows remote authenticated users to gain administrator privileges by modifying the original (1) p_User_user_id and (2) User_user_id parameters to UserProfile.aspx, then modifying the password field.

    Published: 21 Dec 2005
    7.8
    High

    CVE-2005-4456

    Last Modified: 16 Apr 2026

    Multiple buffer overflows in MailEnable Professional 1.71 and Enterprise 1.1 before patch ME-10009 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via long (1) LIST, (2) LSUB, and (3) UID FETCH commands. NOTE: it is possible that these are alternate vectors for the issue described in CVE-2005-4402.

    Published: 21 Dec 2005
    7.5
    High

    CVE-2005-4267

    Last Modified: 16 Apr 2026

    Stack-based buffer overflow in Qualcomm WorldMail 3.0 allows remote attackers to execute arbitrary code via a long IMAP command that ends with a "}" character, as demonstrated using long (1) LIST, (2) LSUB, (3) SEARCH TEXT, (4) STATUS INBOX, (5) AUTHENTICATE, (6) FETCH, (7) SELECT, and (8) COPY commands.

    Published: 21 Dec 2005
    5
    Medium

    CVE-2005-4452

    Last Modified: 16 Apr 2026

    Information Call Center stores the CallCenterData.mdb database under the web root with insufficient access control, which allows remote attackers to obtain sensitive information such as usernames and passwords.

    Published: 21 Dec 2005
    4.3
    Medium

    CVE-2005-4454

    Last Modified: 16 Apr 2026

    Validate-before-filter vulnerability in cleanhtml.pl 1.129 in LiveJournal CVS before Dec 7 2005, when the cleancss option is enabled, allows remote attackers to conduct cross-site scripting (XSS) attacks via a "\" (backslash) within a "javascript" scheme in a style property (such as "javas\cript"), which bypasses the "javascript" check before the "\" is stripped and then rendered in web browsers that allow scripting in style sheets.

    Published: 21 Dec 2005
    9
    Critical

    CVE-2005-4458

    Last Modified: 16 Apr 2026

    Group.pm in Metadot Portal Server 6.4.4 and earlier does not properly reset the $IS_OWNER, $IS_ADMIN, and $IS_MANAGER global variables when performing checks for special privileges, which allows users to gain administrator privileges by adding themselves to the SITE_MGR group.

    Published: 21 Dec 2005
    5
    Medium

    CVE-2005-4440

    Last Modified: 16 Apr 2026

    The 802.1q VLAN protocol allows remote attackers to bypass network segmentation and spoof VLAN traffic via a message with two 802.1q tags, which causes the second tag to be redirected from a downstream switch after the first tag has been stripped, as demonstrated by Yersinia, aka "double-tagging VLAN jumping attack."

    Published: 21 Dec 2005
    7.2
    High

    CVE-2005-4442

    Last Modified: 16 Apr 2026

    Untrusted search path vulnerability in OpenLDAP before 2.2.28-r3 on Gentoo Linux allows local users in the portage group to gain privileges via a malicious shared object in the Portage temporary build directory, which is part of the RUNPATH.

    Published: 21 Dec 2005
    7.2
    High

    CVE-2005-4443

    Last Modified: 16 Apr 2026

    Untrusted search path vulnerability in Gauche before 0.8.6-r1 on Gentoo Linux allows local users in the portage group to gain privileges via a malicious shared object in the Portage temporary build directory, which is part of the RUNPATH.

    Published: 21 Dec 2005
    5
    Medium

    CVE-2005-4441

    Last Modified: 16 Apr 2026

    The PVLAN protocol allows remote attackers to bypass network segmentation and spoof PVLAN traffic via a PVLAN message with a target MAC address that is set to a gateway router, which causes the packet to be sent to the router, where the source MAC is modified, aka "Modification of the MAC spoofing PVLAN jumping attack," as demonstrated by pvlan.c.

    Published: 21 Dec 2005
    5.1
    Medium

    CVE-2005-4445

    Last Modified: 16 Apr 2026

    Off-by-one error in Pegasus Mail 4.21a through 4.21c and 4.30PB1 allows remote attackers to execute arbitrary code via a long email message header, which triggers a one-byte buffer overflow.

    Published: 21 Dec 2005
    4.3
    Medium

    CVE-2005-4446

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in index.asp in ASPBite 8.x allows remote attackers to inject arbitrary web script or HTML via the strSearch parameter.

    Published: 21 Dec 2005
    7.5
    High

    CVE-2005-4447

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in articles\articles_funcs.php in phpCOIN 1.2.2 allows remote attackers to modify SQL syntax and possibly execute SQL in limited circumstances via the rec_next parameter. NOTE: the original disclosure suggests that command injection is not feasible because the injection occurs after an "ORDER BY" clause, but it is likely that this bug could result in an error message path disclosure due to a syntax error, in some environments. Therefore this is an exposure and should be included in CVE.

    Published: 21 Dec 2005
    5.1
    Medium

    CVE-2005-4444

    Last Modified: 16 Apr 2026

    Stack-based buffer overflow in the trace message functionality in Pegasus Mail 4.21a through 4.21c and 4.30PB1 allow remote attackers to execute arbitrary code via a long POP3 reply.

    Published: 21 Dec 2005
    4.3
    Medium

    CVE-2005-4433

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in search.php in Esselbach Storyteller CMS 1.8 allows remote attackers to inject arbitrary web script or HTML via the query parameter, which is used by the Search field.

    Published: 21 Dec 2005
    4.3
    Medium

    CVE-2005-4435

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in index.php AbleDesign D-Man 3.x allows remote attackers to inject arbitrary web script or HTML via the title parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 21 Dec 2005
    7.8
    High

    CVE-2005-4439

    Last Modified: 16 Apr 2026

    Buffer overflow in ELOG elogd 2.6.0-beta4 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a URL with a long (1) cmd or (2) mode parameter.

    Published: 21 Dec 2005
    7.8
    High

    CVE-2005-4436

    Last Modified: 16 Apr 2026

    Extended Interior Gateway Routing Protocol (EIGRP) 1.2, as implemented in Cisco IOS after 12.3(2), 12.3(3)B, and 12.3(2)T and other products, allows remote attackers to cause a denial of service by sending a "spoofed neighbor announcement" with (1) mismatched k values or (2) "goodbye message" Type-Length-Value (TLV).

    Published: 21 Dec 2005
    7.5
    High

    CVE-2005-4437

    Last Modified: 16 Apr 2026

    MD5 Neighbor Authentication in Extended Interior Gateway Routing Protocol (EIGRP) 1.2, as implemented in Cisco IOS 11.3 and later, does not include the Message Authentication Code (MAC) in the checksum, which allows remote attackers to sniff message hashes and (1) replay EIGRP HELLO messages or (2) cause a denial of service by sending a large number of spoofed EIGRP neighbor announcements, which results in an ARP storm on the local network.

    Published: 21 Dec 2005
    7.5
    High

    CVE-2005-4438

    Last Modified: 16 Apr 2026

    Heap-based buffer overflow in Dec2Rar.dll 3.2.14.3, as distributed in the Symantec Antivirus Library and used by various Symantec products, allows remote attackers to execute arbitrary code via RAR archives with sub-block headers that contain incorrect values in the length field.

    Published: 21 Dec 2005
    4.3
    Medium

    CVE-2005-4434

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in AbleDesign ReSearch 2.x allows remote attackers to inject arbitrary web script or HTML via unknown vectors. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 21 Dec 2005
    4.3
    Medium

    CVE-2005-4432

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in index.php in PlaySMS 0.8 allows remote attackers to inject arbitrary web script or HTML via the err parameter.

    Published: 21 Dec 2005
    7.5
    High

    CVE-2005-4429

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in CS-Cart 1.3.0 allows remote attackers to execute arbitrary SQL commands via the (1) sort_by and (2) sort_order parameters to index.php.

    Published: 21 Dec 2005
    7.5
    High

    CVE-2005-4430

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in LogicBill 1.0 and earlier allows remote attackers to execute arbitrary SQL commands via the (1) __mode and (2) __id parameters to helpdesk.php.

    Published: 21 Dec 2005
    7.5
    High

    CVE-2005-4431

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in WowBB 1.65 allows remote attackers to execute arbitrary SQL commands via the q parameter to search.php. NOTE: the view_user.php/sort_by vector is already covered by CVE-2005-1554 and CVE-2004-2181.

    Published: 21 Dec 2005
    7.5
    High

    CVE-2005-4427

    Last Modified: 16 Apr 2026

    Multiple SQL injection vulnerabilities in Cerberus Helpdesk allow remote attackers to execute arbitrary SQL commands via the (1) file_id parameter to attachment_send.php, (2) the $addy variable in email_parser.php, (3) $address variable in email_parser.php, (4) $a_address variable in structs.php, (5) kbid parameter to cer_KnowledgebaseHandler.class.php, (6) queues[] parameter to addresses_export.php, (7) $thread variable to display.php, (8) ticket parameter to display_ticket_thread.php.

    Published: 20 Dec 2005
    4.3
    Medium

    CVE-2005-4428

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in index.php in Cerberus Helpdesk allows remote attackers to inject arbitrary web script or HTML via the kb_ask parameter.

    Published: 20 Dec 2005
    4.3
    Medium

    CVE-2005-4393

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in show.cfm in e-publish CMS 2.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) obcatid and (2) comid parameters.

    Published: 20 Dec 2005
    4.3
    Medium

    CVE-2005-4394

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in EPiX 3.1.2 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified search query parameters.

    Published: 20 Dec 2005
    4.3
    Medium

    CVE-2005-4395

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in FarCry 3.0 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified search parameters, possibly the criteria parameter.

    Published: 20 Dec 2005
    7.5
    High

    CVE-2005-4397

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in RunScript.asp iCMS allows remote attackers to execute arbitrary SQL commands via the Event_ID parameter.

    Published: 20 Dec 2005
    4.3
    Medium

    CVE-2005-4401

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in Lutece 1.2.3 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified search parameters, possibly the query parameter.

    Published: 20 Dec 2005
    7.5
    High

    CVE-2005-4403

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in index.php in Marwel 2.7 and earlier allows remote attackers to execute arbitrary SQL commands via the show parameter.

    Published: 20 Dec 2005
    4.3
    Medium

    CVE-2005-4400

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in downloads/portal_ent in Liferay Portal Enterprise 3.6.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) _77_struts_action, (2) p_p_mode, and (3) p_p_state parameters.

    Published: 20 Dec 2005
    4.3
    Medium

    CVE-2005-4407

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in index.cfm in Mercury CMS 4.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) content and (2) criteria parameters.

    Published: 20 Dec 2005
    7.5
    High

    CVE-2005-4408

    Last Modified: 16 Apr 2026

    Multiple SQL injection vulnerabilities in Miraserver 1.0 RC4 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) page parameter to index.php, (2) id parameter to newsitem.php, and (3) cat parameter to article.php.

    Published: 20 Dec 2005
    4.3
    Medium

    CVE-2005-4409

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in MMBase 1.7.4 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified search parameters.

    Published: 20 Dec 2005
    4.3
    Medium

    CVE-2005-4410

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in NQcontent 3 allows remote attackers to inject arbitrary web script or HTML via unspecified search parameters, possibly the text parameter.

    Published: 20 Dec 2005
    7.5
    High

    CVE-2005-4411

    Last Modified: 16 Apr 2026

    Buffer overflow in Mercury Mail Transport System 4.01b allows remote attackers to execute arbitrary code via a long request to TCP port 105.

    Published: 20 Dec 2005
    7.5
    High

    CVE-2005-4416

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in index.php in TML CMS 0.5 allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Published: 20 Dec 2005
    7.5
    High

    CVE-2005-4419

    Last Modified: 16 Apr 2026

    Multiple SQL injection vulnerabilities in CategoryResults.cfm in Honeycomb Archive and Honeycomb Archive Enterprise 3.0 allow remote attackers to execute arbitrary SQL commands via the (1) series, (2) cat_parent, (3) cat, and (4) div parameters.

    Published: 20 Dec 2005