Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
2005-05-02 CVE-2005-1086 Remote Buffer Overflow vulnerability in AN An-Httpd 1.42N
Buffer overflow in the cmdIS.DLL plugin for AN HTTPD Server 1.42n allows remote attackers to execute arbitrary code via an HTTP request with a long User-Agent header.
network
low complexity
an
6.4
2005-05-02 CVE-2005-1085 Cross-site scripting (XSS) vulnerability in the control panel in aeDating 3.2 allows remote attackers to inject arbitrary web script or HTML.
network
aewebworks
4.3
2005-05-02 CVE-2005-1083 Unspecified vulnerability in Aewebworks Aedating 3.2
index.php in aeDating 3.2 allows remote attackers to include arbitrary files via the skin parameter.
network
low complexity
aewebworks
5.0
2005-05-02 CVE-2005-1081 Multiple vulnerability in Azerbaijan Development Group Azdgdating 1.1.0
Cross-site scripting (XSS) vulnerability in view.php in AzDGDatingPlatinum 1.1.0 allows remote attackers to inject arbitrary web script or HTML via the id parameter.
4.3
2005-05-02 CVE-2005-1080 Directory Traversal vulnerability in Sun J2SE Software Development Kit Java Archive Tool
Directory traversal vulnerability in the Java Archive Tool (Jar) utility in J2SE SDK 1.4.2 and 1.5, and OpenJDK, allows remote attackers to create or overwrite arbitrary files via a ..
network
low complexity
sun
5.0
2005-05-02 CVE-2005-1076 HTML Injection vulnerability in Webct Campus4.1
Cross-site scripting (XSS) vulnerability in the discussion board functionality for WebCT Campus Edition 4.1 allows remote attackers to inject arbitrary web script or HTML via the message field.
network
webct
4.3
2005-05-02 CVE-2005-1075 Multiple vulnerability in Radscripts Radbids 2
Multiple cross-site scripting (XSS) vulnerabilities in RadScripts RadBids Gold 2 allow remote attackers to inject arbitrary web script or HTML via (1) the farea parameter to faq.php or the (2) cat, (3) order, or (4) area parameters to index.php.
network
radscripts
4.3
2005-05-02 CVE-2005-1073 Multiple vulnerability in Radscripts Radbids 2
Directory traversal vulnerability in index.php for RadScripts RadBids Gold 2 allows remote attackers to read arbitrary files via the read parameter.
network
low complexity
radscripts
5.0
2005-05-02 CVE-2005-1068 Cross-site scripting (XSS) vulnerability in sCssBoard 1.11 and earlier allows remote attackers to execute arbitrary Javascript via [url] tags.
network
scssboard
4.3
2005-05-02 CVE-2005-1061 The secure script in LogWatch before 2.6-2 allows attackers to prevent LogWatch from detecting malicious activity via certain strings in the secure file that are later used as part of a regular expression, which causes the parser to crash, aka "logwatch log processing regular expression DoS."
network
low complexity
logwatch redhat
5.0