Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2005-05-02 CVE-2005-1079 SQL injection vulnerability in index.php for zOOm Media Gallery 2.1.2 allows remote attackers to execute arbitrary SQL commands via the catid parameter.
network
low complexity
mike-de-boer
7.5
2005-05-02 CVE-2005-1076 HTML Injection vulnerability in Webct Campus4.1
Cross-site scripting (XSS) vulnerability in the discussion board functionality for WebCT Campus Edition 4.1 allows remote attackers to inject arbitrary web script or HTML via the message field.
network
webct
4.3
2005-05-02 CVE-2005-1075 Multiple vulnerability in Radscripts Radbids 2
Multiple cross-site scripting (XSS) vulnerabilities in RadScripts RadBids Gold 2 allow remote attackers to inject arbitrary web script or HTML via (1) the farea parameter to faq.php or the (2) cat, (3) order, or (4) area parameters to index.php.
network
radscripts
4.3
2005-05-02 CVE-2005-1074 Multiple vulnerability in Radscripts Radbids 2
SQL injection vulnerability in index.php for RadScripts RadBids Gold 2 allows remote attackers to execute arbitrary SQL commands via the mode parameter.
network
low complexity
radscripts
7.5
2005-05-02 CVE-2005-1073 Multiple vulnerability in Radscripts Radbids 2
Directory traversal vulnerability in index.php for RadScripts RadBids Gold 2 allows remote attackers to read arbitrary files via the read parameter.
network
low complexity
radscripts
5.0
2005-05-02 CVE-2005-1069 Remote Security vulnerability in sCssBoard
Unknown vulnerability in sCssBoard 1.11 and earlier has unknown impact, related to "an exploit on the Profile page."
network
low complexity
scssboard
critical
10.0
2005-05-02 CVE-2005-1068 Cross-site scripting (XSS) vulnerability in sCssBoard 1.11 and earlier allows remote attackers to execute arbitrary Javascript via [url] tags.
network
scssboard
4.3
2005-05-02 CVE-2005-1066 Unspecified vulnerability in University of Washington Pine 4.62
Race condition in rpdump in Pine 4.62 and earlier allows local users to overwrite arbitrary files via a symlink attack.
local
high complexity
university-of-washington
1.2
2005-05-02 CVE-2005-1065 Unspecified vulnerability in Novell Linux Desktop 9
tetex in Novell Linux Desktop 9 allows local users to determine the existence of arbitrary files via a symlink attack in the /var/cache/fonts directory.
local
low complexity
novell
2.1
2005-05-02 CVE-2005-1062 Remote Security vulnerability in Kerio products
The administration protocol for Kerio WinRoute Firewall 6.x up to 6.0.10, Personal Firewall 4.x up to 4.1.2, and MailServer up to 6.0.8 allows remote attackers to quickly obtain passwords that are 5 characters or less via brute force methods.
network
low complexity
kerio
7.5