Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2005-05-02 CVE-2005-1350 Remote Security vulnerability in ad.cgi
The ad.cgi script allows remote attackers to read arbitrary files via a full pathname in the argument.
network
low complexity
leif-m-wright
5.0
2005-05-02 CVE-2005-1349 Buffer Overflow vulnerability in Convert-UUlib Perl Module
Buffer overflow in Convert-UUlib (Convert::UUlib) before 1.051 allows remote attackers to execute arbitrary code via a malformed parameter to a read operation.
network
low complexity
perl
7.5
2005-05-02 CVE-2005-1346 Denial-Of-Service vulnerability in Web Security
Multiple Symantec AntiVirus products, including Norton AntiVirus 2005 11.0.0, Web Security Web Security 3.0.1.72, Mail Security for SMTP 4.0.5.66, AntiVirus Scan Engine 4.3.7.27, SAV/Filter for Domino NT 3.1.1.87, and Mail Security for Exchange 4.5.4.743, when running on Windows, allows remote attackers to cause a denial of service (component crash) and avoid detection via a crafted RAR file.
network
high complexity
symantec
2.6
2005-05-02 CVE-2005-1345 Remote Security vulnerability in Squid
Squid 2.5.STABLE9 and earlier does not trigger a fatal error when it identifies missing or invalid ACLs in the http_access configuration, which could lead to less restrictive ACLs than intended by the administrator.
network
low complexity
squid
7.5
2005-05-02 CVE-2005-1344 Buffer Overflow vulnerability in Apache Http Server 2.0.52
Buffer overflow in htdigest in Apache 2.0.52 may allow attackers to execute arbitrary code via a long realm argument.
network
low complexity
apache
7.5
2005-05-02 CVE-2005-1327 Cross-Site Scripting vulnerability in WoltLab Burning Board
Cross-site scripting (XSS) vulnerability in pms.php for Woltlab Burning Board 2.3.1 PL2 and earlier allows remote attackers to inject arbitrary web script or HTML via the folderid parameter.
network
woltlab
4.3
2005-05-02 CVE-2005-1326 Denial-Of-Service vulnerability in Voodoo Circle
Buffer overflow in VooDoo cIRCle BOTNET before 1.0.33 allows remote authenticated attackers to cause a denial of service (client crash) via a crafted packet.
network
low complexity
voodoo-circle
5.0
2005-05-02 CVE-2005-1325 Unspecified vulnerability in Matthieu Aubry PHPmyvisites 1.3
set_lang.php in phpMyVisites 1.3 allows remote attackers to read and include arbitrary files via the mylang parameter.
network
low complexity
matthieu-aubry
5.0
2005-05-02 CVE-2005-1324 Cross-Site Scripting vulnerability in Phpmyvisites
Multiple cross-site scripting (XSS) vulnerabilities in index.php for phpMyVisites allow remote attackers to inject arbitrary web script or HTML via the (1) part, (2) per, or (3) site parameters.
network
matthieu-aubry
4.3
2005-05-02 CVE-2005-1323 Buffer Overflow vulnerability in Intersoft Netterm 4.2.2
Buffer overflow in NetFtpd for NetTerm 5.1.1 and earlier allows remote attackers to execute arbitrary code via a long USER command.
network
low complexity
intersoft
7.5