| OSVDB ID | Disclosure Date | Title |
|
14250
Description:
(Description Provided by CVE) : nxagent in FreeNX before 0.2.8 does not properly handle when the XAUTHORITY environment variable is not set, which allows local users to access the X server without X authentication.
|
2005-02-28
|
FreeNX X Server Authority File Absense Local Privilege Escalation
|
|
14290
Description:
(Description Provided by CVE) : Unknown vulnerability in FCKeditor 2.0 RC2, when used with PHP-Nuke, allows remote attackers to upload arbitrary files.
|
2005-02-28
|
FCKeditor connector.php File Upload Arbitrary PHP Code Execution
|
|
14317
Description:
(Description Provided by CVE) : lnss.exe in GFI Languard Network Security Scanner 5.0 stores the username and password in memory in plaintext, which could allow local administrators to obtain domain administrator credentials.
|
2005-02-28
|
GFI LANguard NSS MS-SQL/DOMAIN Local Password Disclosure
|
|
14242
Description:
phpBB contains a flaw that may allow a remote attacker to gain access to unauthorized privileges. The issue is triggered due to an error in the comparison of "sessiondata['autologinid']" and "auto_login_key". Further, phpBB does not reset the $userdata['user_level'] variable after a failed autologin. It is possible for a remote attacker to set a specially crafted cookie to change the user_id to that of an administrator resulting in a loss of integrity.
|
2005-02-27
|
phpBB sessions.php autologinid Remote Privilege Escalation
|
|
23394
Description:
LinPHA contains a flaw related to the Edit_File_Info.php, Edit_File_Info_Example.php and Write_File_Info.php scripts that may allow an attacker to manipulate files without proper permission. No further details have been provided.
|
2005-02-27
|
LinPHA Multiple Script Unspecified File Manipulation Issue
|
|
23395
Description:
LinPHA contains a flaw related to the exif thumbnail features invoked by the get_*_thumb.php files. This may allow a remote attacker to gain access to private images. No further details have been provided.
|
2005-02-27
|
LinPHA Unspecified Thumbnail Image Disclosure
|
|
27680
Description:
Unknown / Incomplete
|
2005-02-27
|
Mamblog WYSIWYG Editor Unauthorized Media Folder File Deletion
|
|
14212
Description:
Einstein contains a flaw that may lead to an unauthorized information disclosure. The issue is due to plaintext storage of passwords in the registry, which may disclose username (mail address) and passwords to local users resulting in a loss of confidentiality.
|
2005-02-27
|
Einstein Registry Cleartext Password Disclosure
|
|
14247
Description:
(Description Provided by CVE) : PHP 4 (PHP4) allows attackers to cause a denial of service (daemon crash) by using the readfile function on a file whose size is a multiple of the page size.
|
2005-02-26
|
PHP4 readfile() Function DoS
|
|
14273
Description:
(Description Provided by CVE) : Multiple vulnerabilities in Pixel-Apes SafeHTML before 1.3.0 allow remote attackers to bypass cross-site scripting (XSS) protection via (1) "decimal HTML entities" or (2) "the \x00 symbol."
|
2005-02-26
|
SafeHTML Decimal HTML Entities Bypass
|
|
14274
Description:
Unknown / Incomplete
|
2005-02-26
|
SafeHTML x00 Symbol Bypass
|
|
14243
Description:
phpBB contains a flaw that may lead to an unauthorized information disclosure. The issue is triggered when an invalid date is passed to the viewtopic.php script, which will disclose the software installation path resulting in a loss of confidentiality.
|
2005-02-26
|
phpBB viewtopic.php Path Disclosure
|
|
15298
Description:
Unknown / Incomplete
|
2005-02-26
|
cPanel/WHM SSH Port Forwarding Anonymous Proxy
|
|
14198
Description:
(Description Provided by CVE) : Firefox before 1.0.1 and Mozilla Suite before 1.7.6 use a predictable filename for the plugin temporary directory, which allows local users to delete arbitrary files of other users via a symlink attack on the plugtmp directory.
|
2005-02-25
|
Mozilla Browsers Predictable Plugin Temp Directory Arbitrary File Deletion
|
|
14197
Description:
Firefox contains a flaw that may allow a malicious user to execute arbitrary code. The issue is triggered when downloading a malformed HTML document that includes Firefox XPCOM code to perform actions that are triggered by scrollbar actions. It is possible that the flaw may allow writing to an arbitrary local file.
|
2005-02-25
|
Mozilla Browsers XPCOM Scrollbar Arbitrary Code Execution
|
|
14138
Description:
Unknown / Incomplete
|
2005-02-25
|
DelphiTurk e-Posta profiles.adt Local Password Disclosure
|
|
14137
Description:
(Description Provided by CVE) : DelphiTurk FTP 1.0 stores usernames and passwords in the profile.dat file, which allows local users to gain privileges.
|
2005-02-25
|
DelphiTurk FTP profile.dat Local Password Disclosure
|
|
14577
Description:
(Description Provided by CVE) : Evolution 2.0.3 allows remote attackers to cause a denial of service (application crash or hang) via crafted messages, possibly involving charsets in attachment filenames.
|
2005-02-25
|
Ximian Evolution Email Attachment Saturation DoS
|
|
29045
Description:
(Description Provided by CVE) : The SISCO OSI stack for Windows, as used by MMS-EASE 7.10 and earlier, AX-S4 MMS 5.01 and earlier, AX-S4 ICCP 3.0103 and earlier, and the ICCP Toolkit for MMS-EASE 4.10 and earlier, allows remote attackers to cause a denial of service (process crash) via certain network traffic, as demonstrated using a Nessus scan.
|
2005-02-25
|
SISCO OSI Stack Malformed Packet Remote DoS
|
|
14293
Description:
Unknown / Incomplete
|
2005-02-25
|
Java FSP Library TCP Sequence Prediction
|
|
14294
Description:
Unknown / Incomplete
|
2005-02-25
|
Java FSP Library Received Packet Command And File Issue
|
|
14246
Description:
(Description Provided by CVE) : bsmtpd 2.3 and earlier does not properly sanitize e-mail addresses, which allows remote attackers to execute arbitrary commands.
|
2005-02-25
|
bsmtpd Malformed Address Arbitrary Command Injection
|
|
14241
Description:
(Description Provided by CVE) : cmd5checkpw, when running setuid, does not properly drop privileges before calling the execvp function, which allows local users to read the poppasswd file.
|
2005-02-25
|
cmd5checkpw /etc/poppasswd Local Disclosure
|
|
14291
Description:
Unknown / Incomplete
|
2005-02-25
|
Mozilla Firefox Javascript Image URI Dragging Cross-Domain Scripting
|
|
25401
Description:
Unknown / Incomplete
|
2005-02-25
|
IBM WebSphere Application Server (WAS) EJB Security Role Mismatch
|
|
14238
Description:
A REMOTE overflow exists in BadBlue http Server. The BadBlue http Server fails to validate the mfcisapicommand parameter resulting in a buffer overflow. With a specially crafted request, an attacker can cause the execution of arbitrary code resulting in a loss of integrity.
|
2005-02-25
|
BadBlue ext.dll mfcisapicommand Parameter Remote Overflow
|
|
14237
Description:
(Description Provided by CVE) : Directory traversal vulnerability in CIS WebServer 3.5.13 allows remote attackers to read arbitrary files via .. (dot dot) sequences in the URL.
|
2005-02-25
|
CIS WebServer Traversal Arbitrary File Access
|
|
14239
Description:
(Description Provided by CVE) : Buffer overflow in Stormy Studios Knet 1.04c and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long HTTP GET request.
|
2005-02-25
|
KNet HTTP GET Request Remote Overflow
|
|
14127
Description:
(Description Provided by CVE) : The Announce module in phpWebSite 0.10.0 and earlier allows remote attackers to execute arbitrary PHP code by setting the Image field to reference a PHP file whose name contains a .gif.php extension.
|
2005-02-25
|
phpWebSite Image Announcement Upload Arbitrary Command Execution
|
|
14563
Description:
(Description Provided by CVE) : Unknown vulnerability in ftpd on HP-UX B.11.00, B.11.04, B.11.11, B.11.22, and B.11.23 allows remote authenticated users to gain "unauthorized access to files."
|
2005-02-25
|
HP-UX ftpd Unspecified Local Privileged File Access
|
|
14134
Description:
(Description Provided by CVE) : Format string vulnerability in DNA MKBold-MKItalic 0.06_1 and earlier allows remote attackers to execute arbitrary code via crafted BDF font files.
|
2005-02-25
|
mkbold BDF Font File Conversion Format String
|
|
14135
Description:
(Description Provided by CVE) : Format string vulnerability in DNA MKBold-MKItalic 0.06_1 and earlier allows remote attackers to execute arbitrary code via crafted BDF font files.
|
2005-02-25
|
mkitalic BDF Font File Conversion Format String
|
|
14240
Description:
(Description Provided by CVE) : Heap-based buffer overflow in server.cpp for WebMod 0.47 allows remote attackers to cause a denial of service (crash) and execute arbitrary code via a POST request with a Content-Length that is less than the amount of data that is actually sent.
|
2005-02-25
|
WebMod server.cpp Malformed POST Query Content-Length Overflow
|
|
14211
Description:
(Description Provided by CVE) : index.php in phpWebSite 0.10.0 and earlier allows remote attackers to obtain sensitive information via an invalid SEA_search_module parameter, which reveals the path in a PHP error message.
|
2005-02-25
|
phpWebSite Search Module Path Disclosure
|
|
13810
Description:
CubeCart contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the 'cat_id', 'PHPSESSID', 'view_doc', 'product', 'session', 'catname', 'search' and 'page' variables upon submission to all scripts that include the 'settings.inc.php' file. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2005-02-25
|
CubeCart settings.inc.php Multiple Script XSS
|
|
14141
Description:
Unknown / Incomplete
|
2005-02-25
|
WWW File Share Pro user.pwd Local Password Disclosure
|
|
14203
Description:
WU-FTPD contains a flaw that may allow a remote attacker to cause a Denial of Service condition. The issue is due to the wu_fnmatch function in wu_fnmatch.c not properly sanitizing user input. With a specially crafted glob pattern combined with a large number of wildcard characters (*), an attacker can cause the service to use excessive CPU cycles and exhaust all available resources.
|
2005-02-25
|
WU-FTPD wu_fnmatch() Function File Globbing Remote DoS
|
|
14213
Description:
CubeCart contains a flaw that may lead to an unauthorized information disclosure. The issue is triggered when an attacker calls the information.php script with improper arguments, which will disclose the physical path of the web server resulting in a loss of confidentiality.
|
2005-02-25
|
CubeCart information.php Path Disclosure
|
|
14214
Description:
CubeCart contains a flaw that may lead to an unauthorized information disclosure. The issue is triggered when an attacker calls the language.php script with improper arguments, which will disclose the physical path of the web server resulting in a loss of confidentiality.
|
2005-02-25
|
CubeCart language.php Path Disclosure
|
|
14215
Description:
CubeCart contains a flaw that may lead to an unauthorized information disclosure. The issue is triggered when an attacker calls the list_docs.php script with improper arguments, which will disclose the physical path of the web server resulting in a loss of confidentiality.
|
2005-02-25
|
CubeCart list_docs.php Path Disclosure
|