Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2005-05-02 CVE-2005-1355 Remote Security vulnerability in Includer.Cgi 1.1
includer.cgi in The Includer allows remote attackers to read arbitrary files via a full pathname in the argument, a similar vulnerability to CVE-2005-0801.
network
low complexity
includer-cgi
5.0
2005-05-02 CVE-2005-1354 Remote Security vulnerability in Forum.Pl
The forum.pl script allows remote attackers to execute arbitrary commands via shell metacharacters in the argument.
network
low complexity
forum-pl
7.5
2005-05-02 CVE-2005-1353 Remote Security vulnerability in Forum.Pl
The forum.pl script allows remote attackers to read arbitrary files via a full pathname in the argument.
network
low complexity
forum-pl
5.0
2005-05-02 CVE-2005-1352 Cross-Site Scripting vulnerability in ad.cgi
Cross-site scripting (XSS) vulnerability in the ad.cgi script allows remote attackers to inject arbitrary web script or HTML via the argument.
network
leif-m-wright
4.3
2005-05-02 CVE-2005-1351 Remote Security vulnerability in ad.cgi
The ad.cgi script allows remote attackers to execute arbitrary commands via shell metacharacters in the argument.
network
low complexity
leif-m-wright
7.5
2005-05-02 CVE-2005-1350 Remote Security vulnerability in ad.cgi
The ad.cgi script allows remote attackers to read arbitrary files via a full pathname in the argument.
network
low complexity
leif-m-wright
5.0
2005-05-02 CVE-2005-1349 Buffer Overflow vulnerability in Convert-UUlib Perl Module
Buffer overflow in Convert-UUlib (Convert::UUlib) before 1.051 allows remote attackers to execute arbitrary code via a malformed parameter to a read operation.
network
low complexity
perl
7.5
2005-05-02 CVE-2005-1346 Denial-Of-Service vulnerability in Web Security
Multiple Symantec AntiVirus products, including Norton AntiVirus 2005 11.0.0, Web Security Web Security 3.0.1.72, Mail Security for SMTP 4.0.5.66, AntiVirus Scan Engine 4.3.7.27, SAV/Filter for Domino NT 3.1.1.87, and Mail Security for Exchange 4.5.4.743, when running on Windows, allows remote attackers to cause a denial of service (component crash) and avoid detection via a crafted RAR file.
network
high complexity
symantec
2.6
2005-05-02 CVE-2005-1345 Remote Security vulnerability in Squid
Squid 2.5.STABLE9 and earlier does not trigger a fatal error when it identifies missing or invalid ACLs in the http_access configuration, which could lead to less restrictive ACLs than intended by the administrator.
network
low complexity
squid
7.5
2005-05-02 CVE-2005-1344 Buffer Overflow vulnerability in Apache Http Server 2.0.52
Buffer overflow in htdigest in Apache 2.0.52 may allow attackers to execute arbitrary code via a long realm argument.
network
low complexity
apache
7.5