| OSVDB ID | Disclosure Date | Title |
|
22806
Description:
(Description Provided by CVE) : Cross-site scripting (XSS) vulnerability in the Articles module in sPaiz-Nuke allows remote attackers to inject arbitrary web script or HTML via the query parameter in the search file.
|
2006-01-29
|
sPaiz-Nuke Articles Module query Parameter XSS
|
|
22804
Description:
(Description Provided by CVE) : Multiple cross-site scripting (XSS) vulnerabilities in Easy CMS allow remote attackers to inject arbitrary web script or HTML via (1) unknown attack vectors in the administrative interface and (2) input fields of the contact form.
|
2006-01-29
|
Easy CMS Admin Section Multiple XSS
|
|
23003
Description:
(Description Provided by CVE) : Cross-site scripting (XSS) vulnerability in the Add Thread to Favorites feature in usercp2.php in MyBB (aka MyBulletinBoard) 1.02 allows remote attackers to inject arbitrary web script or HTML via an HTTP Referer header ($url variable).
|
2006-01-29
|
MyBulletinBoard (MyBB) usercp2.php url Parameter XSS
|
|
22808
Description:
UBB.threads contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the showflat.php script not properly sanitizing user-supplied input to the 'Number' variable. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2006-01-29
|
UBB.threads showflat.php Number Parameter SQL Injection
|
|
22900
Description:
Ad Zapper for squid contains a flaw that may allow a remote denial of service. The issue is triggered when sending a URL to the squid_redirect script with a large number of forward slashes. This can cause the remote host to consume CPU resources, potentially causing a denial of service.
|
2006-01-29
|
Ad Zapping With Squid squid_redirect Crafted URL DoS
|
|
58846
Description:
(Description Provided by CVE) : Unspecified vulnerability in AOL Instant Messenger (AIM) 5.9.3861 allows user-assisted remote attackers to cause a denial of service (client crash) and possibly execute arbitrary code by tricking the user into requesting Buddy Info about a long screen name, which might cause a buffer overflow.
|
2006-01-29
|
AOL Instant Messenger (AIM) Buddy Info Screen Name Handling Remote Overflow
|
|
23074
Description:
Unknown / Incomplete
|
2006-01-28
|
PmWiki pmwiki.php GLOBALS Unset Path Disclosure
|
|
23075
Description:
Unknown / Incomplete
|
2006-01-28
|
PmWiki pmwiki.php FarmD Parameter Remote File Inclusion
|
|
23076
Description:
Unknown / Incomplete
|
2006-01-28
|
PmWiki Multiple Script GLOBALS Unset FarmD Parameter XSS
|
|
22924
Description:
(Description Provided by CVE) : Cross-site scripting (XSS) vulnerability in Mozilla 1.7.12 and possibly earlier, Mozilla Firefox 1.0.7 and possibly earlier, and Netscape 8.1 and possibly earlier, allows remote attackers to inject arbitrary web script or HTML via the -moz-binding (Cascading Style Sheets) CSS property, which does not require that the style sheet have the same origin as the web page, as demonstrated by the compromise of a large number of LiveJournal accounts.
|
2006-01-28
|
Mozilla Firefox -moz-binding CSS Same Origin Policy Bypass
|
|
79167
Description:
(Description Provided by CVE) : Cross-site scripting (XSS) vulnerability in Mozilla 1.7.12 and possibly earlier, Mozilla Firefox 1.0.7 and possibly earlier, and Netscape 8.1 and possibly earlier, allows remote attackers to inject arbitrary web script or HTML via the -moz-binding (Cascading Style Sheets) CSS property, which does not require that the style sheet have the same origin as the web page, as demonstrated by the compromise of a large number of LiveJournal accounts.
|
2006-01-28
|
Netscape -moz-binding CSS Same Origin Policy Bypass
|
|
22807
Description:
(Description Provided by CVE) : Cross-site scripting (XSS) vulnerability in UebiMiau 2.7.9, and possibly earlier versions, allows remote attackers to inject arbitrary web script or HTML via a javascript: URI in the SRC attribute of an IMG tag.
|
2006-01-28
|
UebiMiau Webmail HTML Email Body XSS
|
|
22791
Description:
(Description Provided by CVE) : Unspecified vulnerability in Pioneers (formerly gnocatan) before 0.9.49 allows remote attackers to cause a denial of service (application crash) via long chat messages.
|
2006-01-28
|
Pioneers Client Chat Message Overflow DoS
|
|
22792
Description:
(Description Provided by CVE) : pmwiki.php in PmWiki 2.1 beta 20, with register_globals enabled, allows remote attackers to bypass protection mechanisms that deregister global variables by setting both a GPC variable and a GLOBALS[] variable with the same name, which causes PmWiki to unset the GLOBALS[] variable but not the GPC variable, which creates resultant vulnerabilities such as remote file inclusion and cross-site scripting (XSS).
|
2006-01-28
|
PmWiki register_globals Variable Overwrite Security Bypass
|
|
22935
Description:
(Description Provided by CVE) : zbattle.net Zbattle client 1.09 SR-1 beta allows remote attackers to cause an unspecified denial of service by rapidly creating and closing a game.
|
2006-01-28
|
Zbattle Client Game Creation Saturation DoS
|
|
23351
Description:
(Description Provided by CVE) : Multiple memory leaks in the LDAP component in Fedora Directory Server 1.0 allow remote attackers to cause a denial of service (memory consumption) via invalid BER packets that trigger an error, which might prevent memory from being freed if it was allocated during the ber_scanf call, as demonstrated using the ProtoVer LDAP test suite.
|
2006-01-27
|
Fedora Directory Server LDAP Invalid BER Packet Memory Leak DoS
|
|
23352
Description:
(Description Provided by CVE) : dn2ancestor in the LDAP component in Fedora Directory Server 1.0 allows remote attackers to cause a denial of service (CPU and memory consumption) via a ModDN operation with a DN that contains a large number of "," (comma) characters, which results in a large amount of recursion, as demonstrated using the ProtoVer LDAP test suite.
|
2006-01-27
|
Fedora Directory Server LDAP dn2ancestor Crafted ModDN Operation Remote DoS
|
|
23353
Description:
(Description Provided by CVE) : The LDAP component in Fedora Directory Server 1.0 allow remote attackers to cause a denial of service (crash) via a certain "bad BER sequence" that results in a free of uninitialized memory, as demonstrated using the ProtoVer LDAP test suite.
|
2006-01-27
|
Fedora Directory Server LDAP Malformed BER Sequence Remote DoS
|
|
22790
Description:
ASPThai Forums contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the login.asp script not properly sanitizing user-supplied input to the 'password' variable. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2006-01-27
|
ASPThai Forums login.asp password Parameter SQL Injection
|
|
23657
Description:
Microsoft Internet Explorer contains a flaw that may allow a malicious user to bypass the kill bit settings for ActiveX controls. The issue is triggered when user visits a malicious web page that contains specially crafted HTML which would cause the killbit setting for ActiveX controls to be bypassed. It is possible that the flaw may allow to execute arbitary code with user privileges.
|
2006-01-27
|
Microsoft IE ActiveX Killbit Setting Bypass
|
|
22794
Description:
(Description Provided by CVE) : Buffer overflow in git-checkout-index in GIT before 1.1.5 allows remote attackers to execute arbitrary code via an index file with a long symbolic link.
|
2006-01-27
|
GIT git-checkout-index Symbolic Link Handling Overflow
|
|
22787
Description:
(Description Provided by CVE) : CommuniGate Pro Core Server before 5.0.7 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via LDAP messages with negative BER lengths, and possibly other vectors, as demonstrated by the ProtoVer LDAP test suite.
|
2006-01-27
|
CommuniGate Pro Server LDAP BER Decoding Unspecified Code Execution
|
|
22788
Description:
(Description Provided by CVE) : CommuniGate Pro Core Server before 5.0.7 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via LDAP messages with negative BER lengths, and possibly other vectors, as demonstrated by the ProtoVer LDAP test suite.
|
2006-01-27
|
CommuniGate Pro Server LDAP BER Decoding Malformed Input DoS
|
|
22945
Description:
(Description Provided by CVE) : Multiple integer overflows in Shareaza 2.2.1.0 allow remote attackers to execute arbitrary code via (1) a large packet length field, which causes an overflow in the ReadBuffer function in (a) BTPacket.cpp and (b) EDPacket.cpp, or (2) a large packet, which causes a heap-based overflow in the Write function in (c) Packet.h.
|
2006-01-26
|
Shareaza BTPacket.cpp BtPacket::ReadBuffer() Function Remote Overflow
|
|
22946
Description:
(Description Provided by CVE) : Multiple integer overflows in Shareaza 2.2.1.0 allow remote attackers to execute arbitrary code via (1) a large packet length field, which causes an overflow in the ReadBuffer function in (a) BTPacket.cpp and (b) EDPacket.cpp, or (2) a large packet, which causes a heap-based overflow in the Write function in (c) Packet.h.
|
2006-01-26
|
Shareaza EDPacket.cpp CEDPacket::ReadBuffer() Function Remote Overflow
|
|
22947
Description:
(Description Provided by CVE) : Multiple integer overflows in Shareaza 2.2.1.0 allow remote attackers to execute arbitrary code via (1) a large packet length field, which causes an overflow in the ReadBuffer function in (a) BTPacket.cpp and (b) EDPacket.cpp, or (2) a large packet, which causes a heap-based overflow in the Write function in (c) Packet.h.
|
2006-01-26
|
Shareaza Packet.h CPacket::Write() Function Remote Overflow
|
|
22922
Description:
(Description Provided by CVE) : Directory traversal vulnerability in Vis.pl, as part of the FACE CONTROL product, allows remote attackers to read arbitrary files via a .. (dot dot) in any parameter that opens a file, such as (1) s or (2) p.
|
2006-01-26
|
Face Control vis.pl Multiple Parameter Traversal Arbitrary File Access
|
|
22810
Description:
Calendarix contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the cal_functions.inc.php script not properly sanitizing user-supplied input to the 'catview' variable. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2006-01-26
|
Calendarix cal_functions.inc.php catview Parameter SQL Injection
|
|
22811
Description:
Calendarix contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the admin/cal_login.php script not properly sanitizing user-supplied input to the 'login' variable. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2006-01-26
|
Calendarix admin/cal_login.php login Parameter SQL Injection
|
|
22754
Description:
Cisco VPN Conentrator 3000 contains a flaw that may allow a remote denial of service. The issue is triggered when a specially crafted HTTP packet is sent to the service, which will lead to the device being rebooted. This will result in loss of availability for the platform.
|
2006-01-26
|
Cisco VPN 3000 Concentrator Crafted HTTP Packet DoS
|
|
22876
Description:
Unknown / Incomplete
|
2006-01-26
|
HTTP Anti Virus Proxy Multiple AV Scanner Failure
|
|
23313
Description:
Unknown / Incomplete
|
2006-01-26
|
Snort Fragmentation Timing Signature Bypass
|
|
22756
Description:
(Description Provided by CVE) : Buffer overflow in the realpath function in nfs-server rpc.mountd, as used in SUSE Linux 9.1 through 10.0, allows local users to execute arbitrary code via unspecified vectors involving mount requests and symlinks.
|
2006-01-26
|
Linux nfs-server rpc.mountd realpath() Function Overflow
|
|
22750
Description:
MyBB contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the 'sortby', 'sortordr' and 'keywords' variables upon submission to the search.php script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2006-01-25
|
MyBulletinBoard (MyBB) search.php Multiple Parameter XSS
|
|
22720
Description:
Phpclanwebsite contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the index.php script not properly sanitizing user-supplied input to the "par" variable. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2006-01-25
|
Phpclanwebsite index.php par Parameter SQL Injection
|
|
22721
Description:
Phpclanwebsite contains a flaw that may lead to an unauthorized information disclosure. The issue is triggered when a remote attacker who is logged in as a clan administrator assigns a backslash to an the "page" variable, which will disclose the software's installation path in an error message, resulting in a loss of confidentiality. While such information is relatively low risk, it is often useful in carrying out additional, more focused attacks.
|
2006-01-25
|
Phpclanwebsite uploader.php Path Disclosure
|
|
22722
Description:
Phpclanwebsite contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the 'par' and 'poll_id' variables upon submission to the 'index.php' script, and will call the 'pollresults.php' script without validating these variables. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2006-01-25
|
Phpclanwebsite pollresults.php poll_id Parameter XSS
|
|
39241
Description:
(Description Provided by CVE) : Unspecified vulnerability in the kernel in Red Hat Enterprise Linux (RHEL) 4 on the x86_64 platform allows local users to cause a denial of service (OOPS) via unspecified vectors related to the get_gate_vma function and the fuser command.
|
2006-01-25
|
Linux Kernel on RHEL get_gate_vma Function Local DoS
|
|
22719
Description:
Oracle PL/SQL Gateway (a component of iAS, OAS and the Oracle HTTP Server) contains a flaw that may allow a malicious user to gain access to unauthorized privileges. The issue is caused by a failure to filter user input when referencing the PLSQLExclusion list. This flaw may lead to a loss of integrity.
|
2006-01-25
|
Oracle Multiple Products PL/SQL Gateway PLSQLExclusion List Bypass
|
|
22761
Description:
A remote overflow exists in E-Post. The SMTP service fails to check the length of the username supplied to the AUTH PLAIN and AUTH LOGIN commands, resulting in a stack-based overflow. With a specially crafted request, an attacker can cause arbitrary code execution resulting in a loss of integrity.
|
2006-01-25
|
E-Post Multiple Products SMTP Multiple AUTH Command Remote Overflow
|