Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2005-12-01 CVE-2005-3934 Denial of Service vulnerability in pcAnywhere Authentication
Buffer overflow in Symantec pcAnywhere 11.0.1, 11.5.1, and all other 32-bit versions allows remote attackers to cause a denial of service (application crash) via unknown attack vectors.
network
low complexity
symantec
7.8
2005-12-01 CVE-2005-3933 SQL Injection vulnerability in 88Script Event Calendar 2.0
SQL injection vulnerability in index.php in 88Script's Event Calendar 2.0 and earlier allows remote attackers to execute arbitrary SQL commands via the m parameter.
network
low complexity
88script
7.5
2005-12-01 CVE-2005-3932 SQL Injection vulnerability in O-Kiraku Nikki O-Kiraku Nikki 1.3
SQL injection vulnerability in okiraku.php in O-Kiraku Nikki 1.3 and earlier allows remote attackers to execute arbitrary SQL commands via the day_id parameter.
network
low complexity
o-kiraku-nikki
7.5
2005-12-01 CVE-2005-3931 SQL Injection vulnerability in Asp-Rider 1.6
SQL injection vulnerability in default.asp in ASP-Rider 1.6 allows remote attackers to execute arbitrary SQL commands via the HTTP referer.
network
low complexity
asp-rider
7.5
2005-12-01 CVE-2005-3930 SQL Injection vulnerability in N-13 News N-13 News 1.2
SQL injection vulnerability in index.php in N-13 News 1.2 allows remote attackers to execute arbitrary SQL commands via the id parameter.
network
low complexity
n-13-news
7.5
2005-12-01 CVE-2005-3705 Multiple vulnerability in RETIRED: Apple Mac OS X Security Update 2005-009
Heap-based buffer overflow in WebKit in Mac OS X and OS X Server 10.3.9 and 10.4.3, as used in applications such as Safari, allows remote attackers to execute arbitrary code via unknown attack vectors.
network
low complexity
apple
7.5
2005-12-01 CVE-2005-3704 Multiple vulnerability in RETIRED: Apple Mac OS X Security Update 2005-009
System log server in Mac OS X and OS X Server 10.4 through 10.4.3 allows remote attackers to spoof syslog messages in log files by injecting various control characters such as newline (NL).
network
low complexity
apple
5.0
2005-12-01 CVE-2005-3702 Multiple vulnerability in RETIRED: Apple Mac OS X Security Update 2005-009
Safari in Mac OS X and OS X Server 10.3.9 and 10.4.3 allows remote attackers to cause files to be downloaded to locations outside the download directory via a long file name.
network
low complexity
apple
5.0
2005-12-01 CVE-2005-3701 Multiple vulnerability in Apple mac OS X Server 10.3.9/10.4.3
Unspecified vulnerability in passwordserver in Mac OS X Server 10.3.9 and 10.4.3, when creating an Open Directory master server, allows local users to gain privileges via unknown attack vectors.
local
low complexity
apple
7.2
2005-12-01 CVE-2005-3700 Multiple vulnerability in RETIRED: Apple Mac OS X Security Update 2005-009
Unknown vulnerability in iodbcadmintool in the ODBC Administrator utility in Mac OS X and OS X Server 10.3.9 and 10.4.3 allows local users to execute arbitrary code via unknown attack vectors.
local
low complexity
apple
4.6