Show filters
198 Total Results
Displaying 171-180 of 198
Sort by:
Attacker Value
Unknown
CVE-2005-2028
Disclosure Date: June 21, 2005 (last updated February 22, 2025)
SQL injection vulnerability in index.php for MercuryBoard 1.1.4 and earlier allows remote attackers to execute arbitrary SQL commands via the User-Agent HTTP header.
0
Attacker Value
Unknown
CVE-2005-1549
Disclosure Date: May 14, 2005 (last updated February 22, 2025)
Directory traversal vulnerability in easymsgb.pl in Easy Message Board allows remote attackers to read arbitrary files via a .. (dot dot) in the print parameter.
0
Attacker Value
Unknown
CVE-2005-1550
Disclosure Date: May 14, 2005 (last updated February 22, 2025)
easymsgb.pl in Easy Message Board allows remote attackers to execute arbitrary commands via shell metacharacters in the print parameter.
0
Attacker Value
Unknown
CVE-2005-0003
Disclosure Date: April 14, 2005 (last updated February 22, 2025)
The 64 bit ELF support in Linux kernel 2.6 before 2.6.10, on 64-bit architectures, does not properly check for overlapping VMA (virtual memory address) allocations, which allows local users to cause a denial of service (system crash) or execute arbitrary code via a crafted ELF or a.out file.
0
Attacker Value
Unknown
CVE-2004-1235
Disclosure Date: April 14, 2005 (last updated February 22, 2025)
Race condition in the (1) load_elf_library and (2) binfmt_aout function calls for uselib in Linux kernel 2.4 through 2.429-rc2 and 2.6 through 2.6.10 allows local users to execute arbitrary code by manipulating the VMA descriptor.
0
Attacker Value
Unknown
CVE-2005-0878
Disclosure Date: March 23, 2005 (last updated February 22, 2025)
Cross-site scripting (XSS) vulnerability in MercuryBoard before 1.1.3 allows remote attackers to inject arbitrary web script or HTML via the title field of a PM (private message).
0
Attacker Value
Unknown
CVE-2004-1555
Disclosure Date: December 31, 2004 (last updated February 22, 2025)
Multiple SQL injection vulnerabilities in BroadBoard Instant ASP Message Board allow remote attackers to run arbitrary SQL commands via the (1) keywords parameter to search.asp, (2) handle parameter to profile.asp, (3) txtUserHandle parameter to reg2.asp or (4) txtUserEmail parameter to forgot.asp.
0
Attacker Value
Unknown
CVE-2004-1588
Disclosure Date: December 31, 2004 (last updated February 22, 2025)
SQL injection vulnerability in GoSmart Message Board allows remote attackers to execute arbitrary SQL code via the (1) QuestionNumber and Category parameters to Forum.asp or (2) Username and Password parameter to Login_Exec.asp.
0
Attacker Value
Unknown
CVE-2004-1589
Disclosure Date: December 31, 2004 (last updated February 22, 2025)
Cross-site scripting (XSS) vulnerability in GoSmart Message Board allows remote attackers to execute inject web script or HTML via the (1) Category parameter to Forum.asp or (2) MainMessageID parameter to ReplyToQuestion.asp.
0
Attacker Value
Unknown
CVE-2004-1050
Disclosure Date: December 31, 2004 (last updated February 22, 2025)
Heap-based buffer overflow in Internet Explorer 6 allows remote attackers to execute arbitrary code via long (1) SRC or (2) NAME attributes in IFRAME, FRAME, and EMBED elements, as originally discovered using the mangleme utility, aka "the IFRAME vulnerability" or the "HTML Elements Vulnerability."
0