Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2005-11-04 CVE-2005-3496 Cross-Site Scripting vulnerability in PHP Handicapper PHP Handicapper
Cross-site scripting (XSS) vulnerability in PHP Handicapper allows remote attackers to inject arbitrary web script or HTML via the msg parameter to msg.php.
4.3
2005-11-04 CVE-2005-3495 Remote Authentication Bypass vulnerability in AR-Blog
Ar-blog 5.2 and earlier allows remote attackers to bypass authentication by modifying cookies.
network
low complexity
ar-blog
7.5
2005-11-04 CVE-2005-3494 HTML Injection vulnerability in AR-Blog Comment
Cross-site scripting (XSS) vulnerability in Ar-blog 5.2 and earlier allows remote attackers to inject arbitrary web script or HTML via a blog comment.
network
ar-blog
4.3
2005-11-04 CVE-2005-3493 Remote Denial of Service vulnerability in Battle Carry
Battle Carry .005 and earlier allows remote attackers to cause a denial of service (inaccessible port) via a large packet, which triggers a socket error and terminates the socket that is listening on the server's UDP port.
network
low complexity
afsl-games
5.0
2005-11-04 CVE-2005-3492 Remote Buffer Overflow And Denial Of Service vulnerability in Johannes F. Kuhlmann Flatfrag 0.3
FlatFrag 0.3 and earlier allows remote attackers to cause a denial of service (crash) by sending an NT_CONN_OK command from a client that is not connected, which triggers a null dereference.
network
low complexity
johannes-f-kuhlmann
5.0
2005-11-04 CVE-2005-3491 Remote Buffer Overflow And Denial Of Service vulnerability in Johannes F. Kuhlmann Flatfrag 0.3
Multiple buffer overflows in the receiver function in loop.c in FlatFrag 0.3 and earlier allow remote attackers to execute arbitrary code via the (1) version, (2) name, and (3) model fields.
network
low complexity
johannes-f-kuhlmann
7.5
2005-11-04 CVE-2005-3490 Directory Traversal vulnerability in Asus VideoSecurity Online Web Server
Directory traversal vulnerability in the web server in Asus Video Security 3.5.0.0 and earlier allows remote attackers to read arbitrary files via "../" or "..\" sequences in the URL.
network
low complexity
asus
5.0
2005-11-04 CVE-2005-3489 Buffer Overflow vulnerability in Asus VideoSecurity Online Web Server Authentication
Buffer overflow in Asus Video Security 3.5.0.0 and earlier, when using authorization, allows remote attackers to execute arbitrary code via a long username/password string.
network
low complexity
asus
7.5
2005-11-04 CVE-2005-3350 Unspecified vulnerability in Libungif 4.1.3
libungif library before 4.1.0 allows attackers to corrupt memory and possibly execute arbitrary code via a crafted GIF file that leads to an out-of-bounds write.
network
low complexity
libungif
7.5
2005-11-03 CVE-2005-3488 Multiple vulnerability in Scorched 3D Scorched 3D 39.1
Scorched 3D 39.1 (bf) and earlier allows remote attackers to cause a denial of service (long loop and server hang) via a negative numplayers value that bypasses a signed check in ServerConnectHandler.cpp.
network
low complexity
scorched-3d
7.8