7.5
    High

    CVE-2005-4714

    Last Modified: 21 Jun 2016

    Format string vulnerability in the vmps_log function in OpenVMPS (VLAN Management Policy Server) 1.3 allows remote attackers to execute arbitrary code via unknown vectors.

    Source:Gotfault Security
    Published:31 Dec 2005
    5
    Medium

    CVE-2005-4703

    Last Modified: 11 Feb 2014

    Apache Tomcat 4.0.3, when running on Windows, allows remote attackers to obtain sensitive information via a request for a file that contains an MS-DOS device name such as lpt9, which leaks the pathname in an error message, as demonstrated by lpt9.xtp using Nikto.

    Source:security curmudgeon
    Published:31 Dec 2005
    6.4
    Medium

    CVE-2005-4702

    Last Modified: 23 Jun 2013

    SQL injection vulnerability in the favorites module in index.php in IPBProArcade 2.5.2 allows remote attackers to inject arbitrary SQL commands via the gameid parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. In addition, the demonstration code as used by third parties suggests that this might be a different type of vulnerability related to shell metacharacters. Finally, this could be a rediscovery of CVE-2004-1430.

    Source:almaster
    Published:31 Dec 2005
    4.3
    Medium

    CVE-2005-4698

    Last Modified: 19 Jun 2013

    Cross-site scripting (XSS) vulnerability in TellMe 1.2 and earlier allows remote attackers to inject arbitrary web script or HTML via the 91) q_IP (IP) or (2) q_Host (HOST) parameters.

    Source:Donnie Werner
    Published:31 Dec 2005
    2.1
    Low

    CVE-2005-4696

    Last Modified: 19 Jun 2013

    The Microsoft Wireless Zero Configuration system (WZCS) stores WEP keys and pair-wise Master Keys (PMK) of the WPA pre-shared key in plaintext in memory of the explorer process, which allows attackers with access to process memory to steal the keys and access the network.

    Source:Laszlo Toth
    Published:31 Dec 2005
    7.5
    High

    CVE-2005-4694

    Last Modified: 21 Jun 2013

    Unspecified vulnerability in the www_add method in Asset.pm in Plain Black WebGUI 6.3.0 and other versions before 6.7.6 allows attackers to execute arbitrary code via unknown attack vectors.

    Source:David Maciejak
    Published:31 Dec 2005
    5
    Medium

    CVE-2005-4676

    Last Modified: 13 Aug 2013

    Buffer overflow in Andreas Huggel Exiv2 before 0.9 does not null terminate strings before calling the sscanf function, which allows remote attackers to cause a denial of service (application crash) via images with crafted IPTC metadata.

    Source:Maciek Wierciski
    Published:31 Dec 2005
    4.3
    Medium

    CVE-2005-4675

    Last Modified: 21 Jun 2013

    Cross-site scripting (XSS) vulnerability in list.php in Complete PHP Counter allows remote attackers to inject arbitrary web script or HTML via the c parameter.

    Source:BiPi_HaCk
    Published:31 Dec 2005
    7.5
    High

    CVE-2005-4674

    Last Modified: 21 Jun 2013

    Multiple SQL injection vulnerabilities in list.php in Complete PHP Counter allow remote attackers to execute arbitrary SQL commands via the (1) c or (2) s parameter.

    Source:BiPi_HaCk
    Published:31 Dec 2005
    4.3
    Medium

    CVE-2005-4671

    Last Modified: 15 May 2013

    Cross-site scripting (XSS) vulnerability in simple-upload-53.php in CityPost Simple PHP Upload 5.3 allows remote attackers to inject arbitrary web script or HTML via the message parameter.

    Source:Thom
    Published:31 Dec 2005
    4.3
    Medium

    CVE-2005-4670

    Last Modified: 14 May 2013

    Cross-site scripting (XSS) vulnerability in message.php in CityPost Automated Link Exchange (LNKX) allows remote attackers to inject arbitrary web script or HTML via the msg parameter.

    Source:Thom
    Published:31 Dec 2005
    3.7
    Low

    CVE-2005-4667

    Last Modified: 17 Jul 2013

    Buffer overflow in UnZip 5.50 and earlier allows user-assisted attackers to execute arbitrary code via a long filename command line argument. NOTE: since the overflow occurs in a non-setuid program, there are not many scenarios under which it poses a vulnerability, unless unzip is passed long arguments when it is invoked from other programs.

    Source:DVDMAN
    Published:19 Dec 2005
    5
    Medium

    CVE-2005-4664

    Last Modified: 26 Sept 2016

    SQL injection vulnerability in OcoMon 1.21, and possibly other versions, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the logon page, a different vulnerability than CVE-2005-4662.

    Source:Jonatas Fil
    Published:31 Dec 2005
    7.5
    High

    CVE-2005-4657

    Last Modified: 29 Jun 2013

    Ocean12 Calendar Manager Pro 1.01 allows remote attackers to bypass authentication and obtain sensitive information via a direct request to /admin/view.asp. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Source:syst3m_f4ult
    Published:31 Dec 2005
    5
    Medium

    CVE-2005-4656

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in index.php in TClanPortal 1.1.3 and earlier allows remote attackers to execute arbitrary SQL commands, and retrieve all usernames and passwords, via the id parameter.

    Source:Devil-00
    Published:31 Dec 2005
    7.5
    High

    CVE-2005-4647

    Last Modified: 16 Sept 2016

    Multiple SQL injection vulnerabilities in PEARLINGER Pearl Forums 2.4 allow remote attackers to execute arbitrary SQL commands via the (1) forumsId and (2) topicId parameters in index.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published:31 Dec 2005
    5
    Medium

    CVE-2005-4646

    Last Modified: 16 Sept 2016

    Unspecified vulnerability in index.php in PEARLINGER Pearl Forums 2.4 allows remote attackers to include arbitrary files via the mode parameter, possibly due to a directory traversal vulnerability. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published:31 Dec 2005
    4.3
    Medium

    CVE-2005-4637

    Last Modified: 22 Jul 2013

    Multiple cross-site scripting (XSS) vulnerabilities in index.php in Kayako SupportSuite 3.00.26 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) nav parameter in the downloads module, (2) Full Name and (3) Email fields in the core module, (4) Full Name, (5) Email, and (6) Subject fields in the tickets module, or (7) Registered Email field in the lostpassword feature in the core module.

    Source:r0t3d3Vil
    Published:31 Dec 2005
    Low

    CVE-2005-4633

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-4619. Reason: This candidate is a duplicate of CVE-2005-4619. Notes: All CVE users should reference CVE-2005-4619 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Source:RusH
    Published:31 Dec 2005
    4.3
    Medium

    CVE-2005-4627

    Last Modified: 22 Jul 2013

    Cross-site scripting (XSS) vulnerability in index.php in (1) GmailSite 1.0 through 1.0.4 and (2) GFHost 0.1.1 through 0.4.2 allows remote attackers to inject arbitrary web script or HTML via the lng parameter.

    Source:Lostmon
    Published:31 Dec 2005
    7.5
    High

    CVE-2005-4622

    Last Modified: 23 Jul 2013

    Directory traversal vulnerability in eFileGo 3.01 allows remote attackers to execute arbitrary code, read arbitrary files, and upload arbitrary files via a ... (triple dot) in (1) the URL on port 608 and (2) the argument to upload.exe.

    Source:dr_insane
    Published:31 Dec 2005
    4.6
    Medium

    CVE-2005-4620

    Last Modified: 27 Apr 2011

    Buffer overflow in WinRAR 3.50 and earlier allows local users to execute arbitrary code via a long command-line argument. NOTE: because this program executes with the privileges of the invoking user, and because remote programs do not normally have the ability to specify a command-line argument for this program, there may not be a typical attack vector for the issue that crosses privilege boundaries. Therefore this may not be a vulnerability.

    Source:K4P0
    Published:31 Dec 2005
    7.5
    High

    CVE-2005-4619

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in index.php in phpoutsourcing Zorum Forum 3.5 and earlier allows remote attackers to execute arbitrary SQL commands via the rollid parameter in the showhtmllist method.

    Source:RusH
    Published:31 Dec 2005
    2.1
    Low

    CVE-2005-4605

    Last Modified: 16 Apr 2026

    The procfs code (proc_misc.c) in Linux 2.6.14.3 and other versions before 2.6.15 allows attackers to read sensitive kernel memory via unspecified vectors in which a signed value is added to an unsigned value.

    Source:Jon Oberheide
    Published:23 Dec 2005
    6.4
    Medium

    CVE-2005-4600

    Last Modified: 20 Dec 2016

    Directory traversal vulnerability in tiny_mce_gzip.php in TinyMCE Compressor PHP before 1.06 allows remote attackers to read or include arbitrary files via a trailing null byte (%00) in the (1) theme, (2) language, (3) plugins, or (4) lang parameter.

    Source:irk4z
    Published:31 Dec 2005
    4.3
    Medium

    CVE-2005-4598

    Last Modified: 22 Jul 2013

    Cross-site scripting (XSS) vulnerability in home.php in OoApp Guestbook 2.1 allows remote attackers to inject arbitrary web script or HTML via the page parameter.

    Source:r0t3d3Vil
    Published:31 Dec 2005
    4.3
    Medium

    CVE-2005-4596

    Last Modified: 22 Jul 2013

    Cross-site scripting (XSS) vulnerability in read.php in AdesGuestbook 2.0 allows remote attackers to inject arbitrary web script or HTML via the totalRows_rsRead parameter.

    Source:r0t3d3Vil
    Published:31 Dec 2005
    7.5
    High

    CVE-2005-4593

    Last Modified: 13 Jun 2016

    PHP remote file inclusion vulnerability in phpDocumentor 1.3.0 rc4 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary code via a URL in the (1) FORUM[LIB] parameter in Documentation/tests/bug-559668.php and (2) the root_dir parameter in docbuilder/file_dialog.php.

    Source:rgod
    Published:31 Dec 2005
    4.3
    Medium

    CVE-2005-4588

    Last Modified: 14 Nov 2016

    Cross-site scripting (XSS) vulnerability in Koobi 5 allows remote attackers to inject arbitrary web script or HTML via nested, malformed url BBCode tags. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Source:kurdish hackers team
    Published:30 Dec 2005
    5
    Medium

    CVE-2005-4584

    Last Modified: 16 Apr 2026

    BZFlag server 2.0.4 and earlier allows remote attackers to cause a denial of service (application crash) via a callsign that is not followed by a NULL (\0) character.

    Source:Luigi Auriemma
    Published:29 Dec 2005
    4.3
    Medium

    CVE-2005-4576

    Last Modified: 21 Jul 2013

    Multiple cross-site scripting (XSS) vulnerabilities in the UpdateEngine program in Fatwire UpdateEngine 6.2 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) COUNTRYNAME, (2) EMAIL, and (3) FUELAP_TEMPLATENAME parameters.

    Source:r0t3d3Vil
    Published:29 Dec 2005
    4.3
    Medium

    CVE-2005-4574

    Last Modified: 21 Jul 2013

    Cross-site scripting (XSS) vulnerability in loader.cfm in PaperThin CommonSpot Content Server 4.5 and earlier allows remote attackers to inject arbitrary web script or HTML via the bNewWindow parameter.

    Source:r0t3d3Vil
    Published:29 Dec 2005
    7.5
    High

    CVE-2005-4573

    Last Modified: 18 Jul 2013

    PHP remote file include vulnerability in plog-admin-functions.php in Plogger Beta 2 allows remote attackers to execute arbitrary code via a URL in the config[basedir] parameter.

    Source:Security .Net Information
    Published:29 Dec 2005
    7.5
    High

    CVE-2005-4563

    Last Modified: 18 Jul 2013

    SQL injection vulnerability in main.php in Enterprise Heart Enterprise Connector 1.0.2 allows remote attackers to execute arbitrary SQL commands and bypass login authentication via the loginid parameter, a different vulnerability than CVE-2005-3875.

    Source:Attila Gerendi
    Published:29 Dec 2005
    7.5
    High

    CVE-2005-4560

    Last Modified: 10 Mar 2011

    The Windows Graphical Device Interface library (GDI32.DLL) in Microsoft Windows allows remote attackers to execute arbitrary code via a Windows Metafile (WMF) format image with a crafted SETABORTPROC GDI Escape function call, related to the Windows Picture and Fax Viewer (SHIMGVW.DLL), a different vulnerability than CVE-2005-2123 and CVE-2005-2124, and as originally discovered in the wild on unionseek.com.

    Source:Metasploit
    Published:28 Dec 2005
    5
    Medium

    CVE-2005-4559

    Last Modified: 21 Jul 2013

    mail/include.html in IceWarp Web Mail 5.5.1, as used by Merak Mail Server 8.3.0r and VisNetic Mail Server version 8.3.0 build 1, does not properly initialize the default_layout and layout_settings variables when an unrecognized HTTP_USER_AGENT string is provided, which allows remote attackers to access arbitrary files via a request with an unrecognized User Agent that also specifies the desired default_layout and layout_settings parameters.

    Source:Tan Chew Keong
    Published:28 Dec 2005
    6.5
    Medium

    CVE-2005-4558

    Last Modified: 21 Jul 2013

    IceWarp Web Mail 5.5.1, as used by Merak Mail Server 8.3.0r and VisNetic Mail Server version 8.3.0 build 1, does not properly restrict acceptable values for the language parameter to mail/settings.html before it is stored in a database, which can allow remote authenticated users to include arbitrary PHP code via a URL in a modified lang_settings parameter to mail/index.html.

    Source:Tan Chew Keong
    Published:28 Dec 2005
    5
    Medium

    CVE-2005-4557

    Last Modified: 21 Jul 2013

    dir/include.html in IceWarp Web Mail 5.5.1, as used by Merak Mail Server 8.3.0r and VisNetic Mail Server version 8.3.0 build 1, allows remote attackers to include arbitrary local files via a null byte (%00) in the lang parameter, possibly due to a directory traversal vulnerability.

    Source:Tan Chew Keong
    Published:28 Dec 2005
    7.5
    High

    CVE-2005-4556

    Last Modified: 21 Jul 2013

    PHP remote file include vulnerability in IceWarp Web Mail 5.5.1, as used by Merak Mail Server 8.3.0r and VisNetic Mail Server version 8.3.0 build 1, when register_globals is enabled, allows remote attackers to include arbitrary local and remote PHP files via a URL in the (1) lang_settings and (2) language parameters in (a) accounts/inc/include.php and (b) admin/inc/include.php.

    Source:Tan Chew Keong
    Published:28 Dec 2005
    4.3
    Medium

    CVE-2005-4555

    Last Modified: 21 Jul 2013

    Cross-site scripting (XSS) vulnerability in add.php in DEV web management system 1.5 and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) ENTER_ARTICLE_TITLE, (2) SPECIFY_ZONE, (3) ENTER_ARTICLE_HEADER, and (4) ENTER_ARTICLE_BODY indices in the language array parameter.

    Published:28 Dec 2005
    7.5
    High

    CVE-2005-4554

    Last Modified: 16 Apr 2026

    Multiple SQL injection vulnerabilities in DEV web management system 1.5 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) cat parameter in an openforum action (openforum.php) in index.php, (2) cat parameter in getfile.php, and (3) target parameter in download_now.php.

    Source:rgod
    Published:28 Dec 2005
    7.5
    High

    CVE-2005-4553

    Last Modified: 16 Apr 2026

    Buffer overflow in Golden FTP Server 1.92 allows remote attackers to execute arbitrary code via a long APPE command. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Source:redsand
    Published:28 Dec 2005
    5
    Medium

    CVE-2005-4550

    Last Modified: 21 Jul 2013

    The PORTAL schema in Oracle Application Server (OracleAS) Discussion Forum Portlet allows remote attackers to obtain the source code for arbitrary JSP and other files via a df_next_page parameter with a trailing null byte (%00).

    Source:Johannes Greil
    Published:28 Dec 2005
    7.5
    High

    CVE-2005-4527

    Last Modified: 17 Jul 2013

    Multiple SQL injection vulnerabilities in Direct News 4.9 allow remote attackers to execute arbitrary SQL commands via (1) the setLang parameter in index.php and (2) unspecified search module parameters.

    Source:r0t
    Published:28 Dec 2005
    7.5
    High

    CVE-2005-4517

    Last Modified: 22 Nov 2016

    SQL injection vulnerability in PHP-Fusion 6.00.200 through 6.00.300 allows remote attackers to execute arbitrary SQL commands via the ratings parameter in multiple scripts, such as ratings_include.php.

    Source:krasza
    Published:28 Dec 2005
    4.3
    Medium

    CVE-2005-4516

    Last Modified: 22 Nov 2016

    Multiple cross-site scripting (XSS) vulnerabilities in PHP-Fusion 6.00.200 through 6.00.300 allow remote attackers to inject arbitrary web script or HTML via (1) the sortby parameter in members.php and (2) IMG tags.

    Source:krasza
    Published:28 Dec 2005
    5
    Medium

    CVE-2005-4510

    Last Modified: 17 Jul 2013

    Directory traversal vulnerability in server.np in NetPublish Server 7 allows remote attackers to read arbitrary files via "../" sequences in the template parameter.

    Source:Andy Davis
    Published:23 Dec 2005
    7.2
    High

    CVE-2005-4505

    Last Modified: 21 Jul 2013

    Unquoted Windows search path vulnerability in McAfee VirusScan Enterprise 8.0i (patch 11) and CMA 3.5 (patch 5) might allow local users to gain privileges via a malicious "program.exe" file in the C: folder, which is run by naPrdMgr.exe when it attempts to execute EntVUtil.EXE under an unquoted "Program Files" path.

    Source:Reed Arvin
    Published:23 Dec 2005
    7.8
    High

    CVE-2005-4504

    Last Modified: 21 Jul 2013

    The khtml::RenderTableSection::ensureRows function in KHTMLParser in Apple Mac OS X 10.4.3 and earlier, as used by Safari and TextEdit, allows remote attackers to cause a denial of service (memory consumption and application crash) via HTML files with a large ROWSPAN attribute in a TD tag.

    Source:Tom Ferris
    Published:22 Dec 2005
    5
    Medium

    CVE-2005-4503

    Last Modified: 21 Jul 2013

    httprint v202, and possibly other versions before v301, allows remote attackers to cause a denial of service (crash) via a long Server field in an HTTP response.

    Source:Mariano Nunez Di Croce
    Published:22 Dec 2005