Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2005-11-16 CVE-2005-3589 Remote Client-Side Buffer Overflow vulnerability in Filezilla Server Terminal 0.9.4D
Buffer overflow in FileZilla Server Terminal 0.9.4d may allow remote attackers to cause a denial of service (terminal crash) via a long USER ftp command.
network
low complexity
filezilla
7.8
2005-11-16 CVE-2005-3588 SQL-Injection vulnerability in Advanced Guestbook Advanced Guestbook 2.2
SQL injection vulnerability in admin.php in Advanced Guestbook 2.2 allows remote attackers to execute arbitrary SQL commands and gain privileges via the username field.
network
low complexity
advanced-guestbook
7.5
2005-11-16 CVE-2005-3587 Remote Security vulnerability in ClamAV
Improper boundary checks in petite.c in Clam AntiVirus (ClamAV) before 0.87.1 allows attackers to perform unknown attacks via unknown vectors.
network
low complexity
clam-anti-virus
critical
10.0
2005-11-16 CVE-2005-3585 SQL Injection vulnerability in PHPwebthings 1.4.4
SQL injection vulnerability in forum.php in PhpWebThings 1.4.4 allows remote attackers to execute arbitrary SQL commands via the forum parameter.
network
low complexity
phpwebthings
7.5
2005-11-16 CVE-2005-3584 Cross-Site Scripting vulnerability in PHPwebthings 1.4.4
Cross-site scripting (XSS) vulnerability in forum.php in PhpWebThings 1.4.4 allows remote attackers to inject arbitrary web script or HTML via the forum parameter.
network
phpwebthings
4.3
2005-11-16 CVE-2005-3583 Remote Denial of Service vulnerability in Sun Java Development Kit Font Serialization
(1) Java Runtime Environment (JRE) and (2) Software Development Kit (SDK) 1.4.2_08, 1.4.2_09, and 1.5.0_05 and possibly other versions allow remote attackers to cause a denial of service (JVM unresponsive) via a crafted serialized object, such as a font object as demonstrated on JBoss.
network
low complexity
sun
7.8
2005-11-16 CVE-2005-3582 Packages Insecure RUNPATH vulnerability in Gentoo Linux
ImageMagick before 6.2.4.2-r1 allows local users in the portage group to increase privileges via a shared object in the Portage temporary build directory, which is added to the search path allowing objects in it to be loaded at runtime.
local
low complexity
imagemagick
7.2
2005-11-16 CVE-2005-3581 Packages Insecure RUNPATH vulnerability in Gentoo Linux
GDAL before 1.3.0-r1 allows local users in the portage group to increase privileges via a shared object in the Portage temporary build directory, which is added to the search path allowing objects in it to be loaded at runtime.
local
low complexity
gdal
7.2
2005-11-16 CVE-2005-3580 Packages Insecure RUNPATH vulnerability in Gentoo Linux
QDBM before 1.8.33-r2 allows local users in the portage group to increase privileges via a shared object in the Portage temporary build directory, which is added to the search path allowing objects in it to be loaded at runtime.
local
low complexity
qdbm
7.2
2005-11-16 CVE-2005-3579 Input Validation vulnerability in Walla TeleSite
ts.exe (aka ts.cgi) in Walla TeleSite 3.0 and earlier allows remote attackers to access arbitrary local files via the querystring.
network
low complexity
walla-telesite
5.0