Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2005-05-03 CVE-2005-1825 Unspecified vulnerability in HP Radia Client 3.1.2.0
Multiple stack-based buffer overflows in the nvd_exec function in HP Radia Notify Daemon 3.1.2.0 (formerly by Novadigm), and other versions including 2.x, 3.x, and 4.x, allows remote attackers to execute arbitrary code via a command with crafted parameters to a RADEXECD process.
network
low complexity
hp
7.5
2005-05-03 CVE-2005-1451 Remote Security vulnerability in Serendipity
The media manager in Serendipity before 0.8 allows remote attackers to upload and execute arbitrary (1) .php or (2) .shtml files.
network
low complexity
s9y
7.5
2005-05-03 CVE-2005-1450 Remote Security vulnerability in Serendipity
Unknown vulnerability in "the function used to validate path-names for uploading media" in Serendipity before 0.8 has unknown impact.
network
low complexity
s9y
7.5
2005-05-03 CVE-2005-1447 Remote Security vulnerability in Sitepanel
PHP remote file inclusion vulnerability in main.php in SitePanel 2.6.1 and earlier (SitePanel2) allows remote attackers to execute arbitrary PHP code via the p parameter.
network
low complexity
sitepanel
7.5
2005-05-03 CVE-2005-1446 Remote Security vulnerability in Sitepanel
SitePanel 2.6.1 and earlier (SitePanel2) allows remote attackers to upload and execute arbitrary files such as PHP scripts via an attachment to a trouble ticket.
network
low complexity
sitepanel
7.5
2005-05-03 CVE-2005-1439 Directory Traversal vulnerability in osTicket
Directory traversal vulnerability in attachments.php in osTicket allows remote attackers to read arbitrary files via ..
network
low complexity
osticket
7.5
2005-05-03 CVE-2005-1438 Remote Security vulnerability in Osticket 1
PHP remote file inclusion vulnerability in main.php in osTicket allows remote attackers to execute arbitrary PHP code via the include_dir parameter.
network
low complexity
osticket
7.5
2005-05-03 CVE-2005-1437 SQL-Injection vulnerability in Osticket 1.X
Multiple SQL injection vulnerabilities in osTicket allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to admin.php or (2) cat parameter to view.php.
network
low complexity
osticket
7.5
2005-05-03 CVE-2005-1435 Unspecified vulnerability in Open Webmail Open Webmail
Open WebMail (OWM) before 2.51 20050430 allows remote authenticated users to execute arbitrary commands via shell metacharacters in a filename.
network
low complexity
open-webmail
7.5
2005-05-03 CVE-2005-1434 Denial-Of-Service vulnerability in OpenView Network Node Manager
Multiple unknown vulnerabilities in OpenView Network Node Manager (OV NNM) 6.2, 6.4, 7.01, and 7.50 allow attackers to cause a denial of service or execute arbitrary code.
network
low complexity
hp
7.5