Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2005-05-31 CVE-2005-1776 Unspecified vulnerability in Cnedra
Buffer overflow in the READ_TCP_STRING function in game_message_functions.cpp in the network plugin for C'Nedra 0.4.0 and earlier allows remote attackers to execute arbitrary code via a long text string.
network
low complexity
cnedra
7.5
2005-05-31 CVE-2005-1773 Multiple Unspecified vulnerability in L-Soft Listserv 1.8D/1.8E/14.3
Multiple unknown vulnerabilities in L-Soft LISTSERV 14.3, 1.8e, and 1.8d allow remote attackers to execute arbitrary code or cause a denial of service.
network
low complexity
lsoft
7.5
2005-05-31 CVE-2005-1771 Unknown vulnerability in HP-UX trusted systems B.11.00 through B.11.23 allows remote attackers to gain unauthorized access, possibly involving remshd and/or telnet -t.
network
low complexity
hp
7.5
2005-05-31 CVE-2005-1770 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Alwil Avast Antivirus
Buffer overflow in the Aavmker4 device driver in Avast! Antivirus 4.6 and possibly other versions allows local users to cause a denial of service (system crash) and possibly execute arbitrary code via certain signals combined with crafted input.
local
low complexity
alwil CWE-119
7.2
2005-05-29 CVE-2005-1804 Unspecified vulnerability in NET Portal Dynamic System NET Portal Dynamic System 5.0
Multiple SQL injection vulnerabilities in Net Portal Dynamic System (NPDS) 5.0 allow remote attackers to execute arbitrary SQL commands via the (1) terme parameter in the glossaire module (glossaire.php) or (2) query parameter to links.php.
network
low complexity
net-portal-dynamic-system
7.5
2005-05-29 CVE-2005-1789 Unspecified vulnerability in India Software Solution Shopping Cart
SQL injection vulnerability in SignIn.asp in India Software Solution shopping cart allows remote attackers to execute arbitrary SQL commands via the password.
network
low complexity
india-software-solution
7.5
2005-05-28 CVE-2005-1806 Unspecified vulnerability in Peercast
Format string vulnerability in PeerCast 0.1211 and earlier allows remote attackers to execute arbitrary code via format strings in the URL.
network
low complexity
peercast
7.5
2005-05-27 CVE-2005-1795 Improper Input Validation vulnerability in Clam Anti-Virus Clamav
The filecopy function in misc.c in Clam AntiVirus (ClamAV) before 0.85, on Mac OS, allows remote attackers to execute arbitrary code via a virus in a filename that contains shell metacharacters, which are not properly handled when HFS permissions prevent the file from being deleted and ditto is invoked.
network
low complexity
clam-anti-virus CWE-20
7.5
2005-05-27 CVE-2005-1787 Improper Input Validation vulnerability in PHPstat
setup.php in phpStat 1.5 allows remote attackers to bypass authentication and gain administrator privileges by setting the $check variable.
network
low complexity
phpstat CWE-20
7.5
2005-05-27 CVE-2005-1784 Remote Security vulnerability in Hosting Controller 6.1.0 Hotfix 3.2
Hosting Controller 6.1 HotFix 2.0 and earlier allows remote attackers to steal passwords and gain privileges via a modified emailaddress parameter in an updateprofile action for UserProfile.asp.
network
low complexity
hosting-controller
7.5