7.5
    High

    CVE-2005-4243

    Last Modified: 15 Jul 2013

    Multiple SQL injection vulnerabilities in QuickPayPro 3.1 allow remote attackers to execute arbitrary SQL commands via the (1) popupid parameter in popups.edit.php; (2) so, (3) sb, and (4) nr parameters in customer.tickets.view.php; (5) subrackingid parameter in subscribers.tracking.edit.php; (6) delete parameter in design.php; (7) trackingid parameter in tracking.details.php; and (8) customerid parameter in sales.view.php.

    Source:r0t
    Published:15 Dec 2005
    4.3
    Medium

    CVE-2005-4241

    Last Modified: 13 Jul 2013

    Cross-site scripting (XSS) vulnerability in the category page in VCD-db 0.98 and earlier allows remote attackers to inject arbitrary web script or HTML via the batch parameter.

    Source:r0t3d3Vil
    Published:14 Dec 2005
    7.5
    High

    CVE-2005-4240

    Last Modified: 13 Jul 2013

    SQL injection vulnerability in search.php in VCD-db 0.98 and earlier allows remote attackers to execute arbitrary SQL commands via the by parameter.

    Source:r0t3d3Vil
    Published:14 Dec 2005
    4.3
    Medium

    CVE-2005-4239

    Last Modified: 13 Jul 2013

    Cross-site scripting (XSS) vulnerability in Search/DisplayResults.php in PHP JackKnife 2.21 and earlier allows remote attackers to inject arbitrary web script or HTML via URL-encoded values in the sKeywords parameter.

    Source:r0t3d3Vil
    Published:14 Dec 2005
    4.3
    Medium

    CVE-2005-4238

    Last Modified: 8 Jun 2018

    Cross-site scripting (XSS) vulnerability in view_filters_page.php in Mantis 1.0.0rc3 and earlier allows remote attackers to inject arbitrary web script or HTML via the target_field parameter.

    Source:r0t
    Published:14 Dec 2005
    7.5
    High

    CVE-2005-4234

    Last Modified: 13 Jul 2013

    SQL injection vulnerability in gallery.php in EncapsGallery 1.0.0 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Source:r0t3d3Vil
    Published:14 Dec 2005
    7.5
    High

    CVE-2005-4233

    Last Modified: 14 Jul 2013

    SQL injection vulnerability in advertiser_statistic.php in Ad Manager Pro 2.0 and earlier allows remote attackers to execute arbitrary SQL commands via the ad_number parameter.

    Source:r0t3d3Vil
    Published:14 Dec 2005
    7.5
    High

    CVE-2005-4232

    Last Modified: 14 Jul 2013

    SQL injection vulnerability in index.php in Jamit Job Board 2.4.1 and earlier allows remote attackers to execute arbitrary SQL commands via the cat parameter. NOTE: the vendor has disputed this issue, saying "The vulnerability is without any basis and did not actually work." CVE has not verified either the vendor or researcher statements, but the original researcher is known to make frequent mistakes when reporting SQL injection

    Source:r0t3d3Vil
    Published:14 Dec 2005
    4.3
    Medium

    CVE-2005-4229

    Last Modified: 13 Jul 2013

    Cross-site scripting (XSS) vulnerability in auction.pl in EveryAuction 1.53 and earlier allows remote attackers to inject arbitrary web script or HTML via the searchstring parameter. NOTE: the provenance of this issue is unknown; the details were obtained solely from third party sources and independently verified using source code inspection.

    Source:$um$id
    Published:14 Dec 2005
    7.5
    High

    CVE-2005-4228

    Last Modified: 23 Dec 2016

    Multiple SQL injection vulnerabilities in PhpWebGallery 1.5.1 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) since, (2) sort_by, and (3) items_number parameters to comments.php, (4) the search parameter to category.php, and (5) image_id parameter to picture.php. NOTE: it was later reported that the comments.php/sort_by vector also affects 1.7.2 and earlier.

    Source:r0t3d3Vil
    Published:14 Dec 2005
    7.5
    High

    CVE-2005-4226

    Last Modified: 14 Sept 2016

    Multiple "potential" SQL injection vulnerabilities in phpWebThings 1.4 Patched might allow remote attackers to execute arbitrary SQL commands via (1) the ref parameter in download.php, (2) the direction, msg, sforum, reason, subname, and toform parameters in forum.php, (3) the msg and forum parameters in forum_edit.php, (4) the msg and forum parameters in forum_write.php, (5) the tekst parameter in guestbook.php, (6) the menuoption parameter in index.php, and the (7) sel_avatar parameter in myaccount.php. NOTE: the forum.php/forum vector is already identified by CVE-2005-3585.

    Source:AhLam
    Published:14 Dec 2005
    7.5
    High

    CVE-2005-4221

    Last Modified: 2 Jan 2017

    SQL injection vulnerability in link.php in Arab Portal System 2 Beta 2 allows remote attackers to execute arbitrary SQL commands via the (1) PHPSESSID (session ID) or (2) REQUEST_URI (query string).

    Source:stranger-killer
    Published:14 Dec 2005
    7.5
    High

    CVE-2005-4218

    Last Modified: 14 Sept 2016

    SQL injection vulnerability in forum.php in PHPWebThings 1.4 allows remote attackers to execute arbitrary SQL commands via the msg parameter, a different vulnerability than CVE-2005-3585.

    Source:AhLam
    Published:14 Dec 2005
    7.8
    High

    CVE-2005-4216

    Last Modified: 16 Apr 2026

    The Administration Service (FMSAdmin.exe) in Macromedia Flash Media Server 2.0 r1145 allows remote attackers to cause a denial of service (application crash) via a malformed request with a single character to port 1111.

    Source:Kozan
    Published:14 Dec 2005
    7.5
    High

    CVE-2005-4213

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in mod.php in phpCOIN 1.2.2 allows remote attackers to execute arbitrary SQL commands via the phpcoinsessid cookie.

    Source:rgod
    Published:14 Dec 2005
    5
    Medium

    CVE-2005-4212

    Last Modified: 13 Jul 2013

    Directory traversal vulnerability in coin_includes/db.php in phpCOIN 1.2.2 allows remote attackers to read arbitrary local files via ".." (dot dot) sequences in the $_CCFG[_PKG_PATH_DBSE] variable.

    Published:14 Dec 2005
    7.5
    High

    CVE-2005-4211

    Last Modified: 13 Jul 2013

    PHP remote file inclusion vulnerability in coin_includes/db.php in phpCOIN 1.2.2 allows remote attackers to execute arbitrary PHP code via a URL in the $_CCFG[_PKG_PATH_DBSE] variable.

    Published:14 Dec 2005
    4.3
    Medium

    CVE-2005-4209

    Last Modified: 12 Jul 2013

    WorldClient webmail in Alt-N MDaemon 8.1.3 allows remote attackers to prevent arbitrary users from accessing their inboxes via script tags in the Subject header of an e-mail message, which prevents the user from being able to access the Inbox folder, possibly due to a cross-site scripting (XSS) vulnerability.

    Source:dr_insane
    Published:13 Dec 2005
    5
    Medium

    CVE-2005-4208

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in Flatnuke 2.5.6 allows remote attackers to access arbitrary files via a .. (dot dot) and null byte (%00) in the id parameter of the read module.

    Source:rgod
    Published:13 Dec 2005
    7.5
    High

    CVE-2005-4207

    Last Modified: 13 Jul 2013

    SQL injection vulnerability in BTGrup Admin WebController Script allows remote attackers to execute SQL commands via the (1) Username and (2) Password fields.

    Published:13 Dec 2005
    6.1
    Medium

    CVE-2005-4206

    Last Modified: 12 Jul 2013

    Blackboard Learning and Community Portal System in Academic Suite 6.3.1.424, 6.2.3.23, and other versions before 6 allows remote attackers to redirect users to other URLs and conduct phishing attacks via a modified url parameter to frameset.jsp, which loads the URL into a frame and causes it to appear to be part of a valid page.

    Source:dr_insane
    Published:13 Dec 2005
    4.3
    Medium

    CVE-2005-4205

    Last Modified: 12 Jul 2013

    Cross-site scripting (XSS) vulnerability in searchdb.asp in LocazoList 1.03c and earlier allows remote attackers to inject arbitrary web script or HTML via the q parameter.

    Source:r0t3d3Vil
    Published:13 Dec 2005
    5
    Medium

    CVE-2005-4202

    Last Modified: 12 Jul 2013

    Multiple directory traversal vulnerabilities in LogiSphere 0.9.9j allow remote attackers to access arbitrary files via (1) .. (dot dot), (2) "..." (triple dot), and (3) "..//" sequences in the URL, (4) "../" sequences in the source parameter to viewsource.jsp, or (5) "..\" (dot dot backslash) sequences in the NS-query-pat parameter to the search URL. URL.

    Source:dr_insane
    Published:13 Dec 2005
    7.5
    High

    CVE-2005-4198

    Last Modified: 14 Jul 2013

    SQL injection vulnerability in index.php in Netref 3.0 allows remote attackers to execute arbitrary SQL commands via the cat parameter. NOTE: the provenance of this issue is unknown; the details were obtained solely from third party sources.

    Source:syst3m_f4ult
    Published:13 Dec 2005
    7.5
    High

    CVE-2005-4197

    Last Modified: 12 Jul 2013

    tunnelform.yaws in Nortel SSL VPN 4.2.1.6 allows remote attackers to execute arbitrary commands via a link in the a parameter, which is executed with extra privileges in a cryptographically signed Java Applet.

    Source:Daniel Fabian
    Published:13 Dec 2005
    4.3
    Medium

    CVE-2005-4196

    Last Modified: 25 Nov 2016

    Multiple cross-site scripting (XSS) vulnerabilities in Scout Portal Toolkit (SPT) 1.3.1 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the ss parameter in SPT--QuickSearch.php; (2) ParentId parameter in SPT--BrowseResources.php; (3) the ResourceId parameter in SPT--FullRecord.php; (4) ResourceOffset parameter in SPT--Home.php, (5) F_SearchString parameter in SPT--QuickSearch.php; (6) F_UserName and (7) F_Password parameters in SPT--UserLogin.php; (8) F_SearchCat1, (9) F_TextField1, (10) F_SearchCat2, (11) F_TextField2, (12) F_SearchCat3, (13) F_TextField3, (14) F_SearchCat4, (15) F_TextField4, (16) ResourceType, (17) Language, (18) Audience, (19) Format parameters in SPT--AdvancedSearch.php.

    Source:Preddy
    Published:13 Dec 2005
    7.5
    High

    CVE-2005-4195

    Last Modified: 25 Nov 2016

    Multiple SQL injection vulnerabilities in Scout Portal Toolkit (SPT) 1.3.1 and earlier allow remote attackers to execute arbitrary SQL commands via (1) the ParentId parameter in SPT--BrowseResources.php, (2) ResourceId parameter in SPT--FullRecord.php, (3) ResourceOffset parameter in SPT--Home.php, and (4) F_UserName and (5) F_Password in SPT--UserLogin.php. NOTE: it was later reported that vector 1 is also present in 1.4.0.

    Source:Preddy
    Published:13 Dec 2005
    5
    Medium

    CVE-2005-4194

    Last Modified: 12 Jul 2013

    Buffer overflow in MediaServerList.exe in Sights 'n Sounds Streaming Media Server 2.0.3.a allows remote attackers to cause a denial of service (application crash) via a long query string.

    Source:dr_insane
    Published:13 Dec 2005
    4.3
    Medium

    CVE-2005-4177

    Last Modified: 12 Jul 2013

    Cross-site scripting (XSS) vulnerability in book.cfm in Magic Book Personal and Professional 2.0 allows remote attackers to inject arbitrary web script or HTML via the StartRow parameter.

    Source:r0t
    Published:12 Dec 2005
    2.1
    Low

    CVE-2005-4176

    Last Modified: 28 Mar 2019

    AWARD Bios Modular 4.50pg does not clear the keyboard buffer after reading the BIOS password during system startup, which allows local administrators or users to read the password directly from physical memory.

    Source:Endrazine
    Published:11 Dec 2005
    7.5
    High

    CVE-2005-4171

    Last Modified: 16 Apr 2026

    The "Upload new image" command in the "Manage Images" eFiction 1.1, when members are allowed to upload images, allows remote attackers to execute arbitrary PHP code by uploading a filename with a .php extension that contains a GIF header, which passes the image validity check but executes any PHP code within the file.

    Source:rgod
    Published:11 Dec 2005
    7.5
    High

    CVE-2005-4170

    Last Modified: 5 Dec 2016

    SQL injection vulnerability in eFiction 1.1 allows remote attackers to execute arbitrary SQL commands via the uid parameter to viewuser.php.

    Published:11 Dec 2005
    7.5
    High

    CVE-2005-4169

    Last Modified: 5 Dec 2016

    Multiple SQL injection vulnerabilities in eFiction 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) let parameter in a viewlist action to authors.php and (2) sid parameter to viewstory.php.

    Published:11 Dec 2005
    7.5
    High

    CVE-2005-4168

    Last Modified: 5 Dec 2016

    Multiple SQL injection vulnerabilities in eFiction 1.0, 1.1, and 2.0 allow remote attackers to execute arbitrary SQL commands via (1) the let parameter in a viewlist action to titles.php and (2) the username.

    Published:11 Dec 2005
    4.3
    Medium

    CVE-2005-4167

    Last Modified: 5 Dec 2016

    Cross-site scripting (XSS) vulnerability in eFiction 1.0 and 1.1 allows remote attackers to inject arbitrary web script or HTML via the let parameter in a viewlist action to titles.php.

    Published:11 Dec 2005
    4.3
    Medium

    CVE-2005-4166

    Last Modified: 11 Jul 2013

    Cross-site scripting (XSS) vulnerability in password.asp in DUWare DUportal Pro 3.4.3 allows remote attackers to inject arbitrary web script or HTML via the result parameter.

    Source:Dj_Eyes
    Published:11 Dec 2005
    4.3
    Medium

    CVE-2005-4161

    Last Modified: 12 Jul 2013

    Multiple cross-site scripting (XSS) vulnerabilities in MilliScripts 1.4 redirect script allow remote attackers to inject arbitrary web script or HTML via the domainname parameter to register.php, and other unspecified vectors. NOTE: the vendor has disputed this issue, stating "No invalid input can reach the script.

    Source:Security Nation
    Published:11 Dec 2005
    5
    Medium

    CVE-2005-4160

    Last Modified: 2 Jul 2013

    Directory traversal vulnerability in getdox.php in Torrential 1.2 allows remote attackers to read arbitrary files via "../" sequences in the query string argument.

    Source:Shell
    Published:11 Dec 2005
    4.6
    Medium

    CVE-2005-4158

    Last Modified: 24 Jul 2013

    Sudo before 1.6.8 p12, when the Perl taint flag is off, does not clear the (1) PERLLIB, (2) PERL5LIB, and (3) PERL5OPT environment variables, which allows limited local users to cause a Perl script to include and execute arbitrary library files that have the same name as library files that are included by the script.

    Source:Breno Silva Pinto
    Published:11 Nov 2004
    7.5
    High

    CVE-2005-4155

    Last Modified: 16 Apr 2026

    registration.PHP in ATutor 1.5.1 pl2 allows remote attackers to execute arbitrary SQL commands via an e-mail address that ends in a NULL character, which bypasses the PHP regular expression check. NOTE: it is possible that this is actually a bug in PHP code, in which case this should not be treated as a vulnerability in ATutor.

    Source:rgod
    Published:11 Dec 2005
    6.5
    Medium

    CVE-2005-4145

    Last Modified: 10 Mar 2011

    The MSDE version of Lyris ListManager 5.0 through 8.9b configures the sa account in the database to use a password with a small search space ("lyris" and up to 5 digits, possibly from the process ID), which allows remote attackers to gain access via a brute force attack.

    Source:Metasploit
    Published:10 Dec 2005
    7.5
    High

    CVE-2005-4143

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in Lyris ListManager 5.0 through 8.9a allows remote attackers to execute arbitrary SQL commands via SQL code after a numeric argument to a /read/attachment URL.

    Source:H D Moore
    Published:10 Dec 2005
    7.5
    High

    CVE-2005-4141

    Last Modified: 11 Jul 2013

    Multiple SQL injection vulnerabilities in ASPMForum allow remote attackers to execute arbitrary SQL commands via the (1) harf parameter in kullanicilistesi.asp and (2) baslik parameter in forum.asp.

    Source:dj_eyes2005
    Published:9 Dec 2005
    7.5
    High

    CVE-2005-4140

    Last Modified: 16 Apr 2026

    SQL injection vulnerability in admin/login/index.php in Website Baker 2.6.0 allows remote attackers to execute arbitrary SQL commands via the username parameter, as used by the user field.

    Source:rgod
    Published:9 Dec 2005
    7.5
    High

    CVE-2005-4139

    Last Modified: 11 Jul 2013

    Multiple SQL injection vulnerabilities in ThWboard before 3 Beta 2.84 allow remote attackers to execute arbitrary SQL commands via the (1) year parameter in calendar.php, (2) user parameter array in v_profile.php, and (3) the userid parameter in misc.php.

    Source:trueend5
    Published:9 Dec 2005
    4.3
    Medium

    CVE-2005-4136

    Last Modified: 11 Jul 2013

    Cross-site scripting (XSS) vulnerability in login.php in DRZES HMS 3.2 allows remote attackers to inject arbitrary web script or HTML via the customerEmailAddress parameter.

    Source:Vipsta
    Published:9 Dec 2005
    7.5
    High

    CVE-2005-4135

    Last Modified: 16 Apr 2026

    Direct static code injection vulnerability in includes/newtopic.php in SimpleBBS 1.1 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the Host header (possibly the name parameter or variable), which is then written to data/topics.php.

    Source:unitedasia
    Published:9 Dec 2005
    5
    Medium

    CVE-2005-4134

    Last Modified: 12 Jul 2013

    Mozilla Firefox 1.5, Netscape 8.0.4 and 7.2, and K-Meleon before 0.9.12 allows remote attackers to cause a denial of service (CPU consumption and delayed application startup) via a web site with a large title, which is recorded in history.dat but not processed efficiently during startup. NOTE: despite initial reports, the Mozilla vendor does not believe that this issue can be used to trigger a crash or buffer overflow in Firefox. Also, it has been independently reported that Netscape 8.1 does not have this issue.

    Source:ZIPLOCK
    Published:3 Dec 2005
    6.8
    Medium

    CVE-2005-4131

    Last Modified: 12 Jul 2013

    Unspecified vulnerability in Microsoft Excel 2000, 2002, and 2003, in Microsoft Office 2000 SP3 and other packages, allows user-assisted attackers to execute arbitrary code via an Excel file with a malformed range, which could lead to memory corruption involving an argument to the msvcrt.memmove function, aka "Brand new Microsoft Excel Vulnerability," as originally placed for sale on eBay as item number 7203336538.

    Source:fearwall
    Published:9 Dec 2005
    5
    Medium

    CVE-2005-4095

    Last Modified: 16 Apr 2026

    Directory traversal vulnerability in connector.php in the fckeditor2rc2 addon in DoceboLMS 2.0.4 allows remote attackers to list arbitrary files and directories via ".." sequences in the Type parameter in a GetFoldersAndFiles command.

    Source:rgod
    Published:8 Dec 2005