Search Results (29815 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2005-1262 2 Redhat, Rob Flynn 2 Enterprise Linux, Gaim 2025-04-03 N/A
Gaim 1.2.1 and earlier allows remote attackers to cause a denial of service (application crash) via a malformed MSN message.
CVE-2005-1256 1 Ipswitch 3 Imail, Imail Server, Ipswitch Collaboration Suite 2025-04-03 N/A
Stack-based buffer overflow in the IMAP daemon (IMAPD32.EXE) in IMail 8.13 in Ipswitch Collaboration Suite (ICS), and other versions before IMail Server 8.2 Hotfix 2, allows remote authenticated users to execute arbitrary code via a STATUS command with a long mailbox name.
CVE-2005-1269 2 Redhat, Rob Flynn 2 Enterprise Linux, Gaim 2025-04-03 N/A
Gaim before 1.3.1 allows remote attackers to cause a denial of service (application crash) via a Yahoo! message with non-ASCII characters in a file name.
CVE-2005-1270 1 Gentoo 1 Rootkit Hunter 2025-04-03 N/A
The (1) check_update.sh and (2) rkhunter script in Rootkit Hunter before 1.2.3-r1 create temporary files with predictable file names, which allows local users to overwrite arbitrary files via a symlink attack.
CVE-2005-1301 1 Nprotect 1 Netizen 2025-04-03 N/A
nProtect:Netizen 2005.3.17.1 does not properly verify that the update module is downloaded from an authorized site, which allows remote malicious web sites to write arbitrary files.
CVE-2005-1278 2 Lbl, Redhat 2 Tcpdump, Enterprise Linux 2025-04-03 N/A
The isis_print function, as called by isoclns_print, in tcpdump 3.9.1 and earlier allows remote attackers to cause a denial of service (infinite loop) via a zero length, as demonstrated using a GRE packet.
CVE-2005-1280 2 Lbl, Redhat 2 Tcpdump, Enterprise Linux 2025-04-03 N/A
The rsvp_print function in tcpdump 3.9.1 and earlier allows remote attackers to cause a denial of service (infinite loop) via a crafted RSVP packet of length 4.
CVE-2005-1281 1 Ethereal Group 1 Ethereal 2025-04-03 N/A
Ethereal 0.10.10 and earlier allows remote attackers to cause a denial of service (infinite loop) via a crafted RSVP packet of length 4.
CVE-2005-1288 1 Asp Press 1 Acs Blog 2025-04-03 N/A
inc_login_check.asp ACS Blog 0.8 through 1.1.3 allows remote attackers to gain administrator privileges via the "in" value in a cookie.
CVE-2005-1350 1 Leif M. Wright 1 Ad.cgi 2025-04-03 N/A
The ad.cgi script allows remote attackers to read arbitrary files via a full pathname in the argument.
CVE-2005-1294 1 Nokia 1 Affix 2025-04-03 N/A
The affix_sock_register in the Affix Bluetooth Protocol Stack for Linux might allow local users to gain privileges via a socket call with a negative protocol value, which is used as an array index.
CVE-2005-1295 1 Include.cgi 1 Include.cgi 2025-04-03 N/A
include.cgi script allows remote attackers to read arbitrary files via a full pathname in the argument.
CVE-2005-1296 1 Include.cgi 1 Include.cgi 2025-04-03 N/A
include.cgi script allows remote attackers to execute arbitrary commands via shell metacharacters in the argument.
CVE-2005-1297 1 Include.cgi 1 Include.cgi 2025-04-03 N/A
Cross-site scripting (XSS) vulnerability in the include.cgi script allows remote attackers to inject arbitrary web script or HTML via the argument.
CVE-2005-1298 1 Inserter.cgi 1 Inserter.cgi 2025-04-03 N/A
The inserter.cgi script allows remote attackers to read arbitrary files via a full pathname in the argument.
CVE-2005-1300 1 Inserter.cgi 1 Inserter.cgi 2025-04-03 N/A
Cross-site scripting (XSS) vulnerability in the inserter.cgi script allows remote attackers to inject arbitrary web script or HTML via the argument.
CVE-2005-1309 1 Eaden Mckee 1 Bblog 2025-04-03 N/A
Cross-site scripting (XSS) vulnerability in bBlog 0.7.4 allows remote attackers to inject arbitrary web script or HTML via the (1) entry title field or (2) comment body text.
CVE-2005-1317 1 Horde 1 Chora 2025-04-03 N/A
Cross-site scripting (XSS) vulnerability in Horde Chora module before 1.2.3 allows remote attackers to inject arbitrary web script or HTML via the parent's frame page title.
CVE-2005-1320 1 Horde 1 Mnemo 2025-04-03 N/A
Cross-site scripting (XSS) vulnerability in Horde Mnemo Note Manager before 1.1.4 allows remote attackers to inject arbitrary web script or HTML via the parent's frame page title.
CVE-2005-1950 1 Darryl Burgdorf 1 Webhints 2025-04-03 N/A
hints.pl in Webhints 1.03 allows remote attackers to execute arbitrary commands via shell metacharacters in the argument.