Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2005-12-01 CVE-2005-3935 SQL Injection vulnerability in SocketKB
SQL injection vulnerability in SocketKB 1.1.0 and earlier allows remote attackers to execute arbitrary SQL commands via the (1) node and (2) art_id parameters.
network
low complexity
socketkb
7.5
2005-12-01 CVE-2005-3934 Denial of Service vulnerability in pcAnywhere Authentication
Buffer overflow in Symantec pcAnywhere 11.0.1, 11.5.1, and all other 32-bit versions allows remote attackers to cause a denial of service (application crash) via unknown attack vectors.
network
low complexity
symantec
7.8
2005-12-01 CVE-2005-3933 SQL Injection vulnerability in 88Script Event Calendar 2.0
SQL injection vulnerability in index.php in 88Script's Event Calendar 2.0 and earlier allows remote attackers to execute arbitrary SQL commands via the m parameter.
network
low complexity
88script
7.5
2005-12-01 CVE-2005-3932 SQL Injection vulnerability in O-Kiraku Nikki O-Kiraku Nikki 1.3
SQL injection vulnerability in okiraku.php in O-Kiraku Nikki 1.3 and earlier allows remote attackers to execute arbitrary SQL commands via the day_id parameter.
network
low complexity
o-kiraku-nikki
7.5
2005-12-01 CVE-2005-3931 SQL Injection vulnerability in Asp-Rider 1.6
SQL injection vulnerability in default.asp in ASP-Rider 1.6 allows remote attackers to execute arbitrary SQL commands via the HTTP referer.
network
low complexity
asp-rider
7.5
2005-12-01 CVE-2005-3930 SQL Injection vulnerability in N-13 News N-13 News 1.2
SQL injection vulnerability in index.php in N-13 News 1.2 allows remote attackers to execute arbitrary SQL commands via the id parameter.
network
low complexity
n-13-news
7.5
2005-12-01 CVE-2005-3705 Multiple vulnerability in RETIRED: Apple Mac OS X Security Update 2005-009
Heap-based buffer overflow in WebKit in Mac OS X and OS X Server 10.3.9 and 10.4.3, as used in applications such as Safari, allows remote attackers to execute arbitrary code via unknown attack vectors.
network
low complexity
apple
7.5
2005-12-01 CVE-2005-3701 Multiple vulnerability in Apple mac OS X Server 10.3.9/10.4.3
Unspecified vulnerability in passwordserver in Mac OS X Server 10.3.9 and 10.4.3, when creating an Open Directory master server, allows local users to gain privileges via unknown attack vectors.
local
low complexity
apple
7.2
2005-12-01 CVE-2005-2757 Multiple vulnerability in RETIRED: Apple Mac OS X Security Update 2005-009
Heap-based buffer overflow in CoreFoundation in Mac OS X and OS X Server 10.4 through 10.4.3 allows remote attackers to execute arbitrary code via unknown attack vectors involving "validation of URLs."
network
low complexity
apple
7.5
2005-11-30 CVE-2005-3926 Remote File Include and Command Execution vulnerability in GuppY Error.PHP
Direct static code injection vulnerability in error.php in GuppY 4.5.9 and earlier, when register_globals is disabled, allows remote attackers to execute arbitrary PHP code via the _SERVER[REMOTE_ADDR] parameter, which is injected into a .inc script that is later included by the main script.
network
low complexity
guppy
7.5