CVE Feed

    Dashboard / CVE

    5.8
    Medium

    CVE-2005-4364

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in index.cfm in Hot Banana Web Content Management Suite 5.3 allows remote attackers to inject arbitrary web script or HTML via the keywords parameter.

    Published: 20 Dec 2005
    7.8
    High

    CVE-2005-4360

    Last Modified: 16 Apr 2026

    The URL parser in Microsoft Internet Information Services (IIS) 5.1 on Windows XP Professional SP2 allows remote attackers to execute arbitrary code via multiple requests to ".dll" followed by arguments such as "~0" through "~9", which causes ntdll.dll to produce a return value that is not correctly handled by IIS, as demonstrated using "/_vti_bin/.dll/*/~0". NOTE: the consequence was originally believed to be only a denial of service (application crash and reboot).

    Published: 20 Dec 2005
    4.3
    Medium

    CVE-2005-4355

    Last Modified: 16 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in UStore allow remote attackers to inject arbitrary web script or HTML via the (1) Cat parameter in default.asp and the (2) accessdenied parameter in admin/default.asp. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 20 Dec 2005
    6.4
    Medium

    CVE-2005-4359

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in includes/core.inc.php in ODFaq 2.1.0 allows remote attackers to execute arbitrary SQL commands via the (1) cat and (2) srcText parameters to faq.php.

    Published: 20 Dec 2005
    4.3
    Medium

    CVE-2005-4361

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in search.html in Magnolia Content Management Suite 2.1 allows remote attackers to inject arbitrary web script or HTML via the query parameter.

    Published: 20 Dec 2005
    6.4
    Medium

    CVE-2005-4366

    Last Modified: 16 Apr 2026

    Multiple SQL injection vulnerabilities in DRZES HMS 3.2 allow remote attackers to execute arbitrary SQL commands via the (1) plan_id parameter to (a) domains.php, (b) viewusage.php, (c) pop_accounts.php, (d) databases.php, (e) ftp_users.php, (f) crons.php, (g) pass_dirs.php, (h) zone_files.php, (i) htaccess.php, and (j) software.php; (2) the customerPlanID parameter to viewplan.php; (3) the ref_id parameter to referred_plans.php; (4) customerPlanID parameter to listcharges.php; and (5) the domain parameter to (k) pop_accounts.php, (d) databases.php, (e) ftp_users.php, (f) crons.php, (g) pass_dirs.php, (h) zone_files.php, (i) htaccess.php, and (j) software.php. NOTE: the viewinvoice.php invoiceID vector is already covered by CVE-2005-4137.

    Published: 20 Dec 2005
    5.8
    Medium

    CVE-2005-4367

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in register_domain.php in DRZES HMS 3.2 allows remote attackers to inject arbitrary web script or HTML via unspecified search parameters, possibly the "Domain Availability" field. NOTE: this issue was later reported to affect CONTROLzx (renamed from DRZES) 3.3.4.

    Published: 20 Dec 2005
    4.3
    Medium

    CVE-2005-4365

    Last Modified: 16 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in FLIP 0.9.0.1029 allow remote attackers to inject arbitrary web script or HTML via the (1) name parameter in text.php and (2) frame parameter in forum.php.

    Published: 20 Dec 2005
    5
    Medium

    CVE-2005-3623

    Last Modified: 16 Apr 2026

    nfs2acl.c in the Linux kernel 2.6.14.4 does not check for MAY_SATTR privilege before setting access controls (ACL) on files on exported NFS filesystems, which allows remote attackers to bypass ACLs for readonly mounted NFS filesystems.

    Published: 20 Dec 2005
    7.8
    High

    CVE-2005-4350

    Last Modified: 16 Apr 2026

    Unspecified vulnerability in WBEM Services A.01.x before A.01.05.12 and A.02.x before A.02.00.08 on HP-UX B.11.00 through B.11.23 allows remote attackers to cause an unspecified denial of service via unknown attack vectors.

    Published: 20 Dec 2005
    7.5
    High

    CVE-2005-4353

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in index.php in toendaCMS 0.6.2.1, when configured to use a SQL database, allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Published: 20 Dec 2005
    4.6
    Medium

    CVE-2005-3631

    Last Modified: 16 Apr 2026

    udev does not properly set permissions on certain files in /dev/input, which allows local users to obtain sensitive data that is entered at the console, such as user passwords.

    Published: 20 Dec 2005
    6.3
    Medium

    CVE-2005-4349

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in server_privileges.php in phpMyAdmin 2.7.0 allows remote authenticated users to execute arbitrary SQL commands via the (1) dbname and (2) checkprivs parameters. NOTE: the vendor and a third party have disputed this issue, saying that the main task of the program is to support query execution by authenticated users, and no external attack scenario exists without an auto-login configuration. Thus it is likely that this issue will be REJECTED. However, a closely related CSRF issue has been assigned CVE-2005-4450

    Published: 19 Dec 2005
    5.5
    Medium

    CVE-2006-1058

    Last Modified: 16 Apr 2026

    BusyBox 1.1.1 does not use a salt when generating passwords, which makes it easier for local users to guess passwords from a stolen password file using techniques such as rainbow tables.

    Published: 19 Dec 2005
    3.7
    Low

    CVE-2005-4667

    Last Modified: 16 Apr 2026

    Buffer overflow in UnZip 5.50 and earlier allows user-assisted attackers to execute arbitrary code via a long filename command line argument. NOTE: since the overflow occurs in a non-setuid program, there are not many scenarios under which it poses a vulnerability, unless unzip is passed long arguments when it is invoked from other programs.

    Published: 19 Dec 2005
    7.8
    High

    CVE-2005-4348

    Last Modified: 16 Apr 2026

    fetchmail before 6.3.1 and before 6.2.5.5, when configured for multidrop mode, allows remote attackers to cause a denial of service (application crash) by sending messages without headers from upstream mail servers.

    Published: 19 Dec 2005
    5
    Medium

    CVE-2005-4346

    Last Modified: 16 Apr 2026

    Invalid SQL syntax error in blog.php in phpBB Blog 2.2.2 and earlier allows remote attackers to obtain the full path of the application via an invalid permalink parameter to index.php, which produces an invalid SQL query that leaks the full pathname in a SQL syntax error message. NOTE: this was originally claimed to be SQL injection, but a cleansing step strips all non-digit characters and leaves an empty permalink argument, which leads to the syntax error.

    Published: 18 Dec 2005
    7.5
    High

    CVE-2005-4342

    Last Modified: 16 Apr 2026

    ColdFusion Sandbox on Adobe (formerly Macromedia) ColdFusion MX 6.0, 6.1, 6.1 with JRun, and 7.0 does not throw an exception if the SecurityManager is disabled, which might allow remote attackers to "bypass security controls," aka "JRun Clustered Sandbox Security Vulnerability."

    Published: 17 Dec 2005
    5
    Medium

    CVE-2005-4343

    Last Modified: 16 Apr 2026

    Adobe (formerly Macromedia) ColdFusion MX 6.0, 6.1, 6.1 with JRun, and 7.0 allows remote attackers to attach arbitrary files and send mail via a crafted Subject field, which is not properly handled by the CFMAIL tag in applications that use ColdFusion, aka "CFMAIL injection Vulnerability".

    Published: 17 Dec 2005
    7.2
    High

    CVE-2005-4345

    Last Modified: 16 Apr 2026

    Adobe (formerly Macromedia) ColdFusion MX 7.0 exposes the password hash of the Administrator in an API call, which allows local developers to obtain the hash and gain privileges.

    Published: 17 Dec 2005
    2.1
    Low

    CVE-2005-4344

    Last Modified: 16 Apr 2026

    Adobe (formerly Macromedia) ColdFusion MX 7.0 does not honor when the CFOBJECT /CreateObject(Java) setting is disabled, which allows local users to create an object despite the specified configuration.

    Published: 17 Dec 2005
    4.3
    Medium

    CVE-2005-4339

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in Blackboard Learning and Community Portal System in Academic Suite 6.3.1.424, 6.2.3.23, and other versions before 6 allows remote attackers to inject arbitrary web script or HTML via the context parameter to announcement.pl, which is reflected in the resulting page.

    Published: 17 Dec 2005
    5
    Medium

    CVE-2005-4341

    Last Modified: 16 Apr 2026

    Blackboard Learning and Community Portal System in Academic Suite 6.3.1.424, 6.2.3.23, and other versions before 6 allows remote attackers to list all available categories via a blank category_id parameter to category.pl. NOTE: it is not clear whether this information is sensitive or not, so this might not be an exposure.

    Published: 17 Dec 2005
    Unknown

    CVE-2005-4340

    Last Modified: 16 Sept 2024

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-4206. Reason: This candidate is a duplicate of CVE-2005-4206. Notes: All CVE users should reference CVE-2005-4206 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 17 Dec 2005
    7.5
    High

    CVE-2005-4337

    Last Modified: 16 Apr 2026

    The login page in Blackboard Learning and Community Portal System in Academic Suite 6.3.1.424, 6.2.3.23, and other versions before 6 allows remote attackers to bypass authentication and gain privileges as other users via a modified user_id parameter and a "/" in the encoded_pw parameter.

    Published: 17 Dec 2005
    10
    Critical

    CVE-2005-4338

    Last Modified: 16 Apr 2026

    announcement.pl in Blackboard Learning and Community Portal System in Academic Suite 6.3.1.424, 6.2.3.23, and other versions before 6 allows remote attackers to gain administrator privileges by setting the context parameter to "admin".

    Published: 17 Dec 2005
    7.8
    High

    CVE-2005-4316

    Last Modified: 16 Apr 2026

    HP-UX B.11.00, B.11.04, B.11.11, and B.11.23 allows remote attackers to cause a denial of service via a "Rose Attack" that involves sending a subset of small IP fragments that do not form a complete, larger packet.

    Published: 17 Dec 2005
    6.8
    Medium

    CVE-2005-4317

    Last Modified: 16 Apr 2026

    Limbo CMS 1.0.4.2 and earlier, with register_globals off, does not protect the $_SERVER variable from external modification, which allows remote attackers to use the _SERVER[REMOTE_ADDR] parameter to (1) conduct cross-site scripting (XSS) attacks in the stats module or (2) execute arbitrary code via an eval injection attack in the wrapper option in index2.php.

    Published: 17 Dec 2005
    7.5
    High

    CVE-2005-4318

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in index.php in Limbo CMS 1.0.4.2 and earlier, with register_globals off, allows remote attackers to execute arbitrary SQL commands via the _SERVER[REMOTE_ADDR] parameter, which modifies the underlying $_SERVER variable.

    Published: 17 Dec 2005
    5
    Medium

    CVE-2005-4319

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in index2.php in Limbo CMS 1.0.4.2 and earlier allows remote attackers to include arbitrary PHP files via ".." sequences in the option parameter.

    Published: 17 Dec 2005
    7.8
    High

    CVE-2005-4323

    Last Modified: 16 Apr 2026

    Unspecified vulnerability in Hitachi Cosminexus Collaboration Portal 06-00 through 06-10-/B, Groupmax Collaboration Portal 07-00 through 07-10-/B, and Groupmax Collaboration Web Client 07-00 through 07-10-/A allow remote attackers to cause a denial of service of unspecified impact via repeated invalid requests to the Schedule component.

    Published: 17 Dec 2005
    7.8
    High

    CVE-2005-4324

    Last Modified: 16 Apr 2026

    Hitachi Groupmax Mail SMTP 06-50 through 06-52-/A and 07-00 through 07-20 allows remote attackers to cause a denial of service (service stop) via an e-mail message with an "invalid format."

    Published: 17 Dec 2005
    10
    Critical

    CVE-2005-4325

    Last Modified: 16 Apr 2026

    Multiple unspecified vulnerabilities in Driverse before 0.56b have unknown impact and attack vectors, related to (1) a "ptrace exploit" and (2) "some other potential security problems."

    Published: 17 Dec 2005
    5
    Medium

    CVE-2005-4326

    Last Modified: 16 Apr 2026

    The web interface for American Power Conversion (APC) PowerChute Network Shutdown performs all communication in cleartext (base64-encoded), which allows remote attackers to sniff authentication credentials.

    Published: 17 Dec 2005
    4.3
    Medium

    CVE-2005-4327

    Last Modified: 16 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in Michael Arndt WebCal 1.11-3.04 allow remote attackers to inject arbitrary web script or HTML via the (1) function, (2) year, and (3) date parameters to webcal.cgi, (4) new calendar entries, and (5) notes for entries.

    Published: 17 Dec 2005
    4.3
    Medium

    CVE-2005-4333

    Last Modified: 16 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in Binary Board System (BBS) 0.2.5 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) inreplyto, (2) article, and (3) board parameters to reply.pl, (4) branch, (5) board, and (6) stats.pl parameters to (b) stats.pl, and (7) board parameter to (c) toc.pl.

    Published: 17 Dec 2005
    7.5
    High

    CVE-2005-4334

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in ZixForum 1.12 allows remote attackers to execute arbitrary SQL commands via the H_ID parameter to (1) zixforum/forum.asp, as used in (2) Headforums.asp and (3) Subject.asp.

    Published: 17 Dec 2005
    7.8
    High

    CVE-2005-4335

    Last Modified: 16 Apr 2026

    ProjectForum 4.7.0 and earlier allows remote attackers to cause a denial of service (crash) via a crafted pageid parameter to admin/versions.html.

    Published: 17 Dec 2005
    7.5
    High

    CVE-2005-4331

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in merchant.ihtml in iHTML Merchant Version 2 Pro allows remote attackers to execute arbitrary SQL commands via the (1) step, (2) id, and (3) pid parameters.

    Published: 17 Dec 2005
    7.8
    High

    CVE-2005-4321

    Last Modified: 16 Apr 2026

    The Internet Key Exchange version 1 (IKEv1) implementation in Apani Networks EpiForce 1.9 and earlier running IPSec, allow remote attackers to cause a denial of service (crash) via certain IKE packets, as demonstrated by the PROTOS ISAKMP Test Suite for IKEv1. NOTE: due to the lack of details in the advisory, it is unclear which of CVE-2005-3666, CVE-2005-3667, and/or CVE-2005-3668 this issue applies to.

    Published: 17 Dec 2005
    4.3
    Medium

    CVE-2005-4328

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in webglimpse.cgi in Webglimpse 2.14.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the ID parameter.

    Published: 17 Dec 2005
    7.5
    High

    CVE-2005-4329

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in pafiledb.php in PHP Arena paFileDB Extreme Edition RC 5 and earlier allows remote attackers to execute arbitrary SQL commands via the (1) newsid and (2) id parameter.

    Published: 17 Dec 2005
    5
    Medium

    CVE-2005-4320

    Last Modified: 16 Apr 2026

    Limbo CMS 1.0.4.2 and earlier allows remote attackers to obtain the installation path of the application via a direct request to (1) doc.inc.php, (2) element.inc.php, and (3) node.inc.php, which leaks the path in an error message.

    Published: 17 Dec 2005
    4.3
    Medium

    CVE-2005-4322

    Last Modified: 16 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in Hitachi Cosminexus Collaboration Portal 06-00 through 06-10-/B, Groupmax Collaboration Portal 07-00 through 07-10-/B, and Groupmax Collaboration Web Client 07-00 through 07-10-/A allow remote attackers to inject arbitrary web script or HTML via the (1) Schedule and (2) Calendar components.

    Published: 17 Dec 2005
    9.4
    Critical

    CVE-2005-4332

    Last Modified: 16 Apr 2026

    Cisco Clean Access 3.5.5 and earlier on the Secure Smart Manager allows remote attackers to bypass authentication and cause a denial of service or upload files via direct requests to obsolete JSP files including (1) admin/uploadclient.jsp, (2) apply_firmware_action.jsp, and (3) file.jsp.

    Published: 17 Dec 2005
    4.3
    Medium

    CVE-2005-4336

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in ProjectForum 4.7.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) fwd parameter in admin/adminsignin.html and (2) originalpageid parameter in admin/newpage.html associated with a group.

    Published: 17 Dec 2005
    7.5
    High

    CVE-2005-4330

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in browse.ihtml in iHTML Merchant Mall allows remote attackers to execute arbitrary SQL commands via the (1) id, (2) store, and (3) step parameters.

    Published: 17 Dec 2005
    4.3
    Medium

    CVE-2005-4307

    Last Modified: 16 Apr 2026

    Cross-site scripting (XSS) vulnerability in ScareCrow 2.13 and earlier allows remote attackers to inject arbitrary web script or HTML via the forum parameter to (1) forum.cgi and (2) post.cgi, or (3) the user parameter to profile.cgi.

    Published: 17 Dec 2005
    7.5
    High

    CVE-2005-4308

    Last Modified: 16 Apr 2026

    index.php in ezUpload Pro 2.2 and earlier allows remote attackers to include files via the mode parameter.

    Published: 17 Dec 2005
    7.5
    High

    CVE-2005-4309

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in ezUpload Pro 2.2 and earlier allows remote attackers to execute arbitrary SQL commands via unspecified search module parameters.

    Published: 17 Dec 2005