Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 372 855

Количество 372 855

nvd логотип

CVE-2005-1815

около 21 года назад

Multiple buffer overflows in Hummingbird Connectivity inetD 10.0.0.1 and 9.0.0.4 allows attackers to cause a denial of service and possibly execute arbitrary code via (1) an FTP command with a long argument to FTPD (ftpdw.exe) or (2) a large amount of data to LPD (Lpdw.exe).

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2005-1814

около 21 года назад

Stack-based buffer overflow in PicoWebServer 1.0 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a long URL.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2005-1813

около 21 года назад

Directory traversal vulnerability in FutureSoft TFTP Server Evaluation Version 1.0.0.1 allows remote attackers to read arbitrary files via a TFTP GET request containing (1) "../" (dot dot slash) or (2) "..\" (dot dot backslash) sequences.

CVSS2: 7.8
EPSS: Низкий
nvd логотип

CVE-2005-1812

около 21 года назад

Multiple stack-based buffer overflows in FutureSoft TFTP Server Evaluation Version 1.0.0.1 allow remote attackers to execute arbitrary code via a long (1) filename or (2) transfer mode string in a Read Request (RRQ) or Write Request (WRQ) packet.

CVSS2: 10
EPSS: Средний
nvd логотип

CVE-2005-1811

около 21 года назад

Cross-site scripting (XSS) vulnerability in usercp.php for MyBulletinBoard (MyBB) allows remote attackers to inject arbitrary web script or HTML via the website field in a user profile.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2005-1810

около 21 года назад

SQL injection vulnerability in template-functions-category.php in WordPress 1.5.1 allows remote attackers to execute arbitrary SQL commands via the $cat_ID variable, as demonstrated using the cat parameter to index.php.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2005-1809

около 21 года назад

Sony Ericsson P900 Beamer allows remote attackers to cause a denial of service (panic) via an obexftp session with a long filename in an OBEX File Transfer or OBEX Object Push.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2005-1808

около 21 года назад

Firefly Studios Stronghold 2 1.2 and earlier allows remote attackers to cause a denial of service (crash) via a packet with a large size value for the nickname, which causes a memory allocation failure and generates an exception.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2005-1807

около 21 года назад

The Data function in class.smtp.php in PHPMailer 1.7.2 and earlier allows remote attackers to cause a denial of service (infinite loop leading to memory and CPU consumption) via a long header field.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2005-1806

около 21 года назад

Format string vulnerability in PeerCast 0.1211 and earlier allows remote attackers to execute arbitrary code via format strings in the URL.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2005-1805

около 21 года назад

SQL injection vulnerability in login.asp in an unknown product by Online Solutions for Educators (OS4E) allows remote attackers to execute arbitrary SQL commands via the password.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2005-1804

около 21 года назад

Multiple SQL injection vulnerabilities in Net Portal Dynamic System (NPDS) 5.0 allow remote attackers to execute arbitrary SQL commands via the (1) terme parameter in the glossaire module (glossaire.php) or (2) query parameter to links.php.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2005-1803

около 21 года назад

Multiple cross-site scripting (XSS) vulnerabilities in Net Portal Dynamic System (NPDS) 5.0 allow remote attackers to inject arbitrary web script or HTML via the language parameter to (1) admin.php, or (2) powerpack_f.php, (3) the sitename parameter to sdv_infos.php, (4) the categories parameter to faq.php, (5) the lettre parameter to the glossaire module, (6) the title parameter to reviews.php, or (7) the image_subject parameter to reply.php.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2005-1802

около 21 года назад

Nortel VPN Router (aka Contivity) allows remote attackers to cause a denial of service (crash) via an IPsec IKE packet with a malformed ISAKMP header.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2005-1801

около 21 года назад

The vCard viewer in Nokia 9500 allows attackers to cause a denial of service (crash) via a vCard with a long Name field, which causes the crash when the user views it.

CVSS2: 2.6
EPSS: Низкий
nvd логотип

CVE-2005-1800

около 21 года назад

Cross-site scripting (XSS) vulnerability in Jaws Glossary gadget 0.4 to 0.5.1 allows remote attackers to inject arbitrary web script or HTML via the term parameter in a view or ViewTerm action to index.php.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2005-1799

около 21 года назад

Cross-site scripting (XSS) vulnerability in FreeStyle Wiki 3.5.7 and WikiLite (FSWikiLite) .10 allows remote attackers to inject arbitrary web script or HTML via unknown vectors.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2005-1798

около 21 года назад

Directory traversal vulnerability in ServersCheck Monitoring Software 5.9.0 to 5.10.0 allows remote attackers to read arbitrary files via .. (dot dot) sequences in an HTTP request.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2005-1797

около 21 года назад

The design of Advanced Encryption Standard (AES), aka Rijndael, allows remote attackers to recover AES keys via timing attacks on S-box lookups, which are difficult to perform in constant time in AES implementations.

CVSS2: 5.1
EPSS: Низкий
nvd логотип

CVE-2005-1796

около 21 года назад

Format string vulnerability in the curses_msg function in the Ncurses interface (ec_curses.c) for Ettercap before 0.7.3 allows remote attackers to execute arbitrary code.

CVSS2: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2005-1815

Multiple buffer overflows in Hummingbird Connectivity inetD 10.0.0.1 and 9.0.0.4 allows attackers to cause a denial of service and possibly execute arbitrary code via (1) an FTP command with a long argument to FTPD (ftpdw.exe) or (2) a large amount of data to LPD (Lpdw.exe).

CVSS2: 5
47%
Средний
около 21 года назад
nvd логотип
CVE-2005-1814

Stack-based buffer overflow in PicoWebServer 1.0 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a long URL.

CVSS2: 7.5
4%
Низкий
около 21 года назад
nvd логотип
CVE-2005-1813

Directory traversal vulnerability in FutureSoft TFTP Server Evaluation Version 1.0.0.1 allows remote attackers to read arbitrary files via a TFTP GET request containing (1) "../" (dot dot slash) or (2) "..\" (dot dot backslash) sequences.

CVSS2: 7.8
2%
Низкий
около 21 года назад
nvd логотип
CVE-2005-1812

Multiple stack-based buffer overflows in FutureSoft TFTP Server Evaluation Version 1.0.0.1 allow remote attackers to execute arbitrary code via a long (1) filename or (2) transfer mode string in a Read Request (RRQ) or Write Request (WRQ) packet.

CVSS2: 10
63%
Средний
около 21 года назад
nvd логотип
CVE-2005-1811

Cross-site scripting (XSS) vulnerability in usercp.php for MyBulletinBoard (MyBB) allows remote attackers to inject arbitrary web script or HTML via the website field in a user profile.

CVSS2: 4.3
1%
Низкий
около 21 года назад
nvd логотип
CVE-2005-1810

SQL injection vulnerability in template-functions-category.php in WordPress 1.5.1 allows remote attackers to execute arbitrary SQL commands via the $cat_ID variable, as demonstrated using the cat parameter to index.php.

CVSS2: 7.5
3%
Низкий
около 21 года назад
nvd логотип
CVE-2005-1809

Sony Ericsson P900 Beamer allows remote attackers to cause a denial of service (panic) via an obexftp session with a long filename in an OBEX File Transfer or OBEX Object Push.

CVSS2: 5
2%
Низкий
около 21 года назад
nvd логотип
CVE-2005-1808

Firefly Studios Stronghold 2 1.2 and earlier allows remote attackers to cause a denial of service (crash) via a packet with a large size value for the nickname, which causes a memory allocation failure and generates an exception.

CVSS2: 5
2%
Низкий
около 21 года назад
nvd логотип
CVE-2005-1807

The Data function in class.smtp.php in PHPMailer 1.7.2 and earlier allows remote attackers to cause a denial of service (infinite loop leading to memory and CPU consumption) via a long header field.

CVSS2: 5
4%
Низкий
около 21 года назад
nvd логотип
CVE-2005-1806

Format string vulnerability in PeerCast 0.1211 and earlier allows remote attackers to execute arbitrary code via format strings in the URL.

CVSS2: 7.5
12%
Средний
около 21 года назад
nvd логотип
CVE-2005-1805

SQL injection vulnerability in login.asp in an unknown product by Online Solutions for Educators (OS4E) allows remote attackers to execute arbitrary SQL commands via the password.

CVSS2: 7.5
1%
Низкий
около 21 года назад
nvd логотип
CVE-2005-1804

Multiple SQL injection vulnerabilities in Net Portal Dynamic System (NPDS) 5.0 allow remote attackers to execute arbitrary SQL commands via the (1) terme parameter in the glossaire module (glossaire.php) or (2) query parameter to links.php.

CVSS2: 7.5
1%
Низкий
около 21 года назад
nvd логотип
CVE-2005-1803

Multiple cross-site scripting (XSS) vulnerabilities in Net Portal Dynamic System (NPDS) 5.0 allow remote attackers to inject arbitrary web script or HTML via the language parameter to (1) admin.php, or (2) powerpack_f.php, (3) the sitename parameter to sdv_infos.php, (4) the categories parameter to faq.php, (5) the lettre parameter to the glossaire module, (6) the title parameter to reviews.php, or (7) the image_subject parameter to reply.php.

CVSS2: 4.3
2%
Низкий
около 21 года назад
nvd логотип
CVE-2005-1802

Nortel VPN Router (aka Contivity) allows remote attackers to cause a denial of service (crash) via an IPsec IKE packet with a malformed ISAKMP header.

CVSS2: 5
2%
Низкий
около 21 года назад
nvd логотип
CVE-2005-1801

The vCard viewer in Nokia 9500 allows attackers to cause a denial of service (crash) via a vCard with a long Name field, which causes the crash when the user views it.

CVSS2: 2.6
2%
Низкий
около 21 года назад
nvd логотип
CVE-2005-1800

Cross-site scripting (XSS) vulnerability in Jaws Glossary gadget 0.4 to 0.5.1 allows remote attackers to inject arbitrary web script or HTML via the term parameter in a view or ViewTerm action to index.php.

CVSS2: 4.3
3%
Низкий
около 21 года назад
nvd логотип
CVE-2005-1799

Cross-site scripting (XSS) vulnerability in FreeStyle Wiki 3.5.7 and WikiLite (FSWikiLite) .10 allows remote attackers to inject arbitrary web script or HTML via unknown vectors.

CVSS2: 4.3
1%
Низкий
около 21 года назад
nvd логотип
CVE-2005-1798

Directory traversal vulnerability in ServersCheck Monitoring Software 5.9.0 to 5.10.0 allows remote attackers to read arbitrary files via .. (dot dot) sequences in an HTTP request.

CVSS2: 5
2%
Низкий
около 21 года назад
nvd логотип
CVE-2005-1797

The design of Advanced Encryption Standard (AES), aka Rijndael, allows remote attackers to recover AES keys via timing attacks on S-box lookups, which are difficult to perform in constant time in AES implementations.

CVSS2: 5.1
1%
Низкий
около 21 года назад
nvd логотип
CVE-2005-1796

Format string vulnerability in the curses_msg function in the Ncurses interface (ec_curses.c) for Ettercap before 0.7.3 allows remote attackers to execute arbitrary code.

CVSS2: 7.5
5%
Низкий
около 21 года назад

Уязвимостей на страницу