| OSVDB ID | Disclosure Date | Title |
|
31162
Description:
(Description Provided by CVE) : agencyprofile.asp in Parodia 6.2 and earlier might allow remote attackers to obtain sensitive information by triggering an SQL error via an invalid AG_ID parameter. NOTE: the provenance of this information is unknown; the details are obtained from third party information.
|
2006-02-28
|
Parodia agencyprofile.asp AG_ID Parameter SQL Injection
|
|
31645
Description:
(Description Provided by CVE) : The default configuration of the DNS Server service on Windows Server 2003 and Windows 2000, and the Microsoft DNS Server service on Windows NT 4.0, allows recursive queries and provides additional delegation information to arbitrary IP addresses, which allows remote attackers to cause a denial of service (traffic amplification) via DNS queries with spoofed source IP addresses.
|
2006-02-28
|
Microsoft Windows DNS Recursive Query DoS
|
|
25270
Description:
(Description Provided by CVE) : Argument injection vulnerability in certain PHP 3.x, 4.x, and 5.x applications, when used with sendmail and when accepting remote input for the additional_parameters argument to the mail function, allows remote attackers to read and create arbitrary files via the sendmail -C and -X arguments. NOTE: it could be argued that this is a class of technology-specific vulnerability, instead of a particular instance; if so, then this should not be included in CVE.
|
2006-02-28
|
PHP w/ Sendmail Mail Function additional_parameters Argument Arbitrary File Creation
|
|
23608
Description:
Microsoft IE contains a flaw that may allow a malicious user to trick users into performing certain actions on local resources. The issue is triggered when network shares are included in an iframe occurs. It is possible that the flaw may allow an attacker to trick users into performing certain actions on local folders and files resulting in a loss of confidentiality.
|
2006-02-28
|
Microsoft IE Iframe Folder Delete Weakness
|
|
23584
Description:
STLport contains an overflow condition in the handling of local category names. The issue is due to the 'strcpy()' function in 'src/c_locale_glibc/c_locale_glibc2.c' not validating user-supplied input. With a specially crafted locale strings read from the environment, a local attacker can cause a buffer overflow, resulting in a denial of service or potentially execution of arbitrary code.
|
2006-02-28
|
STLport c_locale_glibc2.c Unspecified Overflow
|
|
23585
Description:
STLport contains an overflow condition in 'src/num_put_float.cpp'. The issue is triggered as user-supplied input is not properly validated when 'cout' is used with 'setw()'. With a local attacker can cause a buffer overflow, resulting in a denial of service or potentially execution of arbitrary code.
|
2006-02-28
|
STLport num_put_float.cpp Unspecified Overflow
|
|
23934
Description:
(Description Provided by CVE) : Buffer overflow in the parse function in parse.c in zoo 2.10 might allow local users to execute arbitrary code via long filename command line arguments, which are not properly handled during archive creation. NOTE: since this issue is local and not setuid, the set of attack scenarios is limited, although is reasonable to expect that there are some situations in which the zoo user might automatically list attacker-controlled filenames to add to the zoo archive.
|
2006-02-28
|
Zoo parse.c parse() Function File Name Handling Overflow
|
|
23548
Description:
Parodia contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the 'AG_ID' variable upon submission to the agencyprofile.asp script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2006-02-28
|
Parodia agencyprofile.asp AG_ID Parameter XSS
|
|
23541
Description:
TOPo contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate 'gTopNombre' variable upon submission to the inc_header.php script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2006-02-28
|
TOPo inc_header.php gTopNombre Parameter XSS
|
|
23572
Description:
By default, M4 Project's enigma-suite client for Windows installs an account with a default password. The 'enigma-client' account has a password of 'nominal' which is publicly known and documented. This allows attackers to trivially access the program or system.
|
2006-02-28
|
M4 Project enigma-suite Windows Client Default Account
|
|
23534
Description:
PHP contains a flaw that may allow a malicious user to gain access to unauthorized privileges. The issue is triggered when sendmail paramaters are passed as arguments to the PHP mb_send_mail function. This flaw may lead to a loss of confidentiality or integrity.
|
2006-02-28
|
PHP mb_send_mail() Function Parameter Restriction Bypass
|
|
23535
Description:
PHP contains a flaw that may allow a malicious local user to view arbitrary files and create or modify existing files with the same level of privelege as the web server. The issue is triggered when a script misuses the imap_open() function. It is possible that the flaw may allow reading arbitrary files or creating, renaming, or deleting existing files resulting in a loss of confidentiality or integrity.
|
2006-02-28
|
PHP imap_open() Function open_basedir/safe_mode Bypass
|
|
23566
Description:
PeHePe Membership Management System contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the 'kuladi' variable upon submission to the 'sol_menu.php' script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2006-02-28
|
PeHePe Membership Management System sol_menu.php kuladi Parameter XSS
|
|
23567
Description:
Membership Management System contains a flaw that may allow a remote attacker to execute arbitrary commands. The issue is due to sol_menu.php not properly sanitizing user input supplied to the 'uye_klasor' variable. This may allow an attacker to include a file from a remote host that contains arbitrary commands which will be executed by the vulnerable script.
|
2006-02-28
|
PeHePe Membership Management System sol_menu.php uye_klasor Parameter Remote File Inclusion
|
|
23798
Description:
(Description Provided by CVE) : Unspecified vulnerability in IBM WebSphere 5.0.2.10 through 5.0.2.15 and 5.1.1.4 through 5.1.1.9 allows remote attackers to obtain sensitive information via unknown attack vectors, which causes JSP source code to be revealed.
|
2006-02-28
|
IBM WebSphere Unspecified JSP Source Disclosure
|
|
23636
Description:
(Description Provided by CVE) : ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-4504. Reason: This candidate is a duplicate of CVE-2005-4504. Notes: All CVE users should reference CVE-2005-4504 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.
|
2006-02-28
|
Apple Safari WebKit HTML Processing Overflow
|
|
23637
Description:
(Description Provided by CVE) : Stack-based buffer overflow in Safari in Mac OS X 10.4.5 and earlier, and 10.3.9 and earlier, allows remote attackers to execute arbitrary code via unspecified vectors involving a web page with crafted JavaScript, a different vulnerability than CVE-2005-4504.
|
2006-02-28
|
Apple Safari JavaScript Processing Unspecified Overflow
|
|
23638
Description:
(Description Provided by CVE) : Safari in Mac OS X 10.3 before 10.3.9 and 10.4 before 10.4.5 allows remote attackers to redirect users to local files and execute arbitrary JavaScript via unspecified vectors involving HTTP redirection to local resources.
|
2006-02-28
|
Apple Safari HTTP Redirection Local Resource Restriction Bypass
|
|
23640
Description:
Mac OS X contains an unspecified flaw related to the automount daemon that may allow a malicious file server to cause a denial of service or execute arbitrary code. No further details have been provided.
|
2006-02-28
|
Apple Mac OS X automount Reserved Name File System Mount
|
|
23641
Description:
Mac OS X contains a flaw that allows an attacker to create archive files which unpack to arbitrary directories which are writable by the current user. The issue is due to the BOM framework not properly sanitizing paths to be written.
|
2006-02-28
|
Apple Mac OS X BOMArchiveHelper Traversal Arbitrary File Overwrite
|
|
23642
Description:
Mac OS X contains an unspecified flaw related to FileVault that allows user directories to be mounted in an unsafe fashion. No further details have been provided.
|
2006-02-28
|
Apple Mac OS X FileVault User Directory Mount Issue
|
|
23643
Description:
Mac OS X contains a flaw that may allow a remote denial of service. The issue is triggered when unspecified IPSEC error conditions are handled incorrectly, and will result in loss of availability for the service.
|
2006-02-28
|
Apple Mac OS X IPSec VPN Error Condition Unspecified DoS
|
|
23644
Description:
A local overflow exists in Mac OS X. LibSystem fails to validate requests for large amounts of memory resulting in a heap overflow. With a specially crafted request, an attacker can cause arbitrary code execution resulting in a loss of integrity.
|
2006-02-28
|
Apple Mac OS X LibSystem Memory Request Overflow
|
|
23645
Description:
Mac OS X contains a flaw that may allow a malicious user to bypass file validation in Mail. The issue is triggered when unspecified techniques are used to mask a file's true type from Download Validation. It is possible that the flaw may allow a malicious file to bypass validation resulting in a loss of integrity.
|
2006-02-28
|
Apple Mac OS X Mail File Extension Spoofing Download Validation Bypass
|
|
23646
Description:
Mac OS X contains a flaw that may allow a malicious user to gain access to unauthorized privileges. The issue is triggered when the passwd command is used with the option to specify a database to operate on. The passwd command does not verify that the user has permission to create the specified file before proceeding, and may lead to a loss of integrity.
|
2006-02-28
|
Apple Mac OS X passwd Database Option Arbitrary File Creation
|
|
23647
Description:
Mac OS X contains a flaw that may allow a malicious local user to create arbitrary files on the system. The issue is due to the passwd program creating temporary files insecurely, using the form /tmp/.pwtmp.<pid> where <pid> is the process id of the passwd process. It is possible for a user to use a symlink style attack to manipulate arbitrary files, resulting in a loss of integrity.
|
2006-02-28
|
Apple Mac OS X passwd Temp File Symlink Arbitrary File Manipulation
|
|
23648
Description:
A remote overflow exists in Mac OS X. The rsync server fails to validate extended attributes resulting in a buffer overflow. With a specially crafted request, an attacker can cause arbitrary code execution resulting in a loss of integrity.
|
2006-02-28
|
Apple Mac OS X rsync Extended Attribute Transfer Remote Overflow
|
|
23649
Description:
Mac OS X contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application may allow Javascript embedded in an RSS feed to run in the context of the RSS reader document. This could allow a user to create a specially crafted RSS feed that would execute arbitrary code by circumventing Safari's security model, leading to a loss of integrity.
|
2006-02-28
|
Apple Mac OS X Syndication RSS Feed XSS
|
|
23568
Description:
(Description Provided by CVE) : Cross-site scripting (XSS) vulnerability in header.php in PunBB 1.2.10 allows remote attackers to inject arbitrary web script or HTML via the URL, which is not properly handled when the PHP_SELF variable is used to handle a pun_page tag.
|
2006-02-28
|
PunBB header.php XSS
|
|
24681
Description:
(Description Provided by CVE) : The HTML rendering engine in Mozilla Thunderbird 1.5, when "Block loading of remote images in mail messages" is enabled, does not properly block external images from inline HTML attachments, which could allow remote attackers to obtain sensitive information, such as application version or IP address, when the user reads the email and the external image is accessed.
|
2006-02-28
|
Mozilla Thunderbird Remote Image Block Bypass
|
|
23554
Description:
(Description Provided by CVE) : SQL injection vulnerability in misc.php in MyBulletinBoard (MyBB) 1.03, when register_globals is enabled, allows remote attackers to execute arbitrary SQL commands by setting the comma variable value via the comma parameter in a cookie. NOTE: 1.04 has also been reported to be affected.
|
2006-02-28
|
MyBulletinBoard (MyBB) Cookie comma Value SQL Injection
|
|
25895
Description:
(Description Provided by CVE) : The default configuration of ISC BIND, when configured as a caching name server, allows recursive queries and provides additional delegation information to arbitrary IP addresses, which allows remote attackers to cause a denial of service (traffic amplification) via DNS queries with spoofed source IP addresses.
|
2006-02-28
|
ISC BIND Cached Recursive Query DoS
|
|
23699
Description:
(Description Provided by CVE) : The frontpage option in Limbo CMS 1.0.4.2 and 1.0.4.1 allows remote attackers to execute arbitrary PHP commands via the Itemid parameter in index.php.
|
2006-02-28
|
Limbo CMS index.php Itemid Variable Arbitrary Command Execution
|
|
23700
Description:
QwikiWiki contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the 'page' variable upon submission to the 'index.php' script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2006-02-28
|
QwikiWiki index.php page Parameter XSS
|
|
23768
Description:
(Description Provided by CVE) : The on-access scanner for McAfee Virex 7.7 for Macintosh, in some circumstances, might not activate when malicious content is accessed from the web browser, and might not prevent the content from being saved, which allows remote attackers to bypass virus protection, as demonstrated using the EICAR test file.
|
2006-02-28
|
McAfee Virex On-access Scanner Failure
|
|
23739
Description:
Unknown / Incomplete
|
2006-02-28
|
GroundZero SSH Bruteforce Prevention Script Arbitrary IP Denial DoS
|
|
23602
Description:
Unknown / Incomplete
|
2006-02-28
|
Netsukuku ANDNA Protocol Unspecified Issue
|
|
31204
Description:
(Description Provided by CVE) : Multiple cross-site scripting (XSS) vulnerabilities in Woltlab Burning Board (wBB) allow remote attackers to inject arbitrary web script or HTML via (1) the username parameter to galerie_index.php and possibly (2) galerie_onfly.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. The second vector might not be XSS.
|
2006-02-27
|
WoltLab Burning Board galerie_index.php username Parameter XSS
|
|
31205
Description:
(Description Provided by CVE) : Multiple cross-site scripting (XSS) vulnerabilities in Woltlab Burning Board (wBB) allow remote attackers to inject arbitrary web script or HTML via (1) the username parameter to galerie_index.php and possibly (2) galerie_onfly.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. The second vector might not be XSS.
|
2006-02-27
|
WoltLab Burning Board galerie_onfly.php XSS
|
|
31160
Description:
(Description Provided by CVE) : PHP remote file inclusion vulnerability in index.php in Top sites de PixelArtKingdom allows remote attackers to include and execute arbitrary files via the page parameter.
|
2006-02-27
|
PixelArtKingdom TopSites index.php page Parameter Remote File Inclusion
|