Latest CVE Feed
-
5.1
MEDIUMCVE-2005-3232
Multiple interpretation error in unspecified versions of TheHacker allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products... Read more
Affected Products : thehacker- Published: Oct. 14, 2005
- Modified: Apr. 03, 2025
-
6.8
MEDIUMCVE-2005-3236
Multiple SQL injection vulnerabilities in Cyphor 0.19 allow remote attackers to execute arbitrary SQL and obtain administrative access via (1) the fid parameter of newmsg.php, which can enable XSS attacks when the SQL syntax is invalid or (2) the nick par... Read more
Affected Products : cyphor- Published: Oct. 14, 2005
- Modified: Apr. 03, 2025
-
5.1
MEDIUMCVE-2005-3228
Multiple interpretation error in unspecified versions of Ikarus AntiVirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by p... Read more
Affected Products : ikarus_antivirus- Published: Oct. 14, 2005
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2005-3207
The forms servlet (f90servlet) in Oracle Forms 4.5.10.22 allows remote attackers to cause a denial of service (TNS listener stop) via a userid parameter that contains a STOP command.... Read more
Affected Products : forms- Published: Oct. 14, 2005
- Modified: Apr. 03, 2025
-
5.1
MEDIUMCVE-2005-3235
Multiple interpretation error in unspecified versions of Proland Protector Plus 2000 Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can... Read more
Affected Products : protector_plus- Published: Oct. 14, 2005
- Modified: Apr. 03, 2025
-
5.1
MEDIUMCVE-2005-3222
Multiple interpretation error in unspecified versions of VBA32 Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by pr... Read more
Affected Products : vba32_antivirus- Published: Oct. 14, 2005
- Modified: Apr. 03, 2025
-
5.1
MEDIUMCVE-2005-3226
Multiple interpretation error in unspecified versions of ArcaVir Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by ... Read more
Affected Products : arcavir_antivirus- Published: Oct. 14, 2005
- Modified: Apr. 03, 2025
-
5.1
MEDIUMCVE-2005-3229
Multiple interpretation error in unspecified versions of ClamAV Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by p... Read more
Affected Products : clamav- Published: Oct. 14, 2005
- Modified: Apr. 03, 2025
-
5.1
MEDIUMCVE-2005-3218
Multiple interpretation error in unspecified versions of Dr.Web Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by p... Read more
Affected Products : dr.web_antivirus- Published: Oct. 14, 2005
- Modified: Apr. 03, 2025
-
5.1
MEDIUMCVE-2005-3224
Multiple interpretation error in unspecified versions of AntiVir Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by ... Read more
Affected Products : antivir_personal- Published: Oct. 14, 2005
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2005-2967
Format string vulnerability in input_cdda.c in xine-lib 1-beta through 1-beta 3, 1-rc, 1.0 through 1.0.2, and 1.1.1 allows remote servers to execute arbitrary code via format string specifiers in metadata in CDDB server responses when the victim plays a C... Read more
Affected Products : xine-lib- Published: Oct. 14, 2005
- Modified: Apr. 03, 2025
-
5.1
MEDIUMCVE-2005-3213
Multiple interpretation error in unspecified versions of F-Prot Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by p... Read more
Affected Products : f-prot_antivirus- Published: Oct. 14, 2005
- Modified: Apr. 03, 2025
-
7.5
HIGHCVE-2005-3199
Multiple SQL injection vulnerabilities in aradmin.asp for aspReady FAQ allow remote attackers to execute arbitrary SQL commands, possibly via the (1) txtLogin and (2) txtPassword parameters.... Read more
Affected Products : aspready_faq_manager- Published: Oct. 14, 2005
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2005-3198
Webroot Desktop Firewall before 1.3.0build52 allows local users to disable the firewall, even when password protection is enabled, via certain DeviceIoControl commands.... Read more
Affected Products : desktop_firewall- Published: Oct. 14, 2005
- Modified: Apr. 03, 2025
-
5.1
MEDIUMCVE-2005-3210
Multiple interpretation error in unspecified versions of Kaspersky Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened b... Read more
Affected Products : kaspersky_anti-virus- Published: Oct. 14, 2005
- Modified: Apr. 03, 2025
-
6.8
MEDIUMCVE-2005-3208
Multiple SQL injection vulnerabilities in (1) aeNovo, (2) aeNovoShop and (3) aeNovoWYSI allow remote attackers to execute arbitrary SQL code via (a) the password parameter in control.asp, and (b) the strSQL parameter in search.asp, which can enable XSS at... Read more
- Published: Oct. 14, 2005
- Modified: Apr. 03, 2025
-
4.3
MEDIUMCVE-2005-3200
Multiple cross-site scripting (XSS) vulnerabilities in Utopia News Pro (UNP) 1.1.3 and 1.1.4 allow remote attackers to inject arbitrary web script or HTML via (1) the sitetitle parameter in header.php and (2) the version and (3) query_count parameters in ... Read more
Affected Products : utopia_news_pro- Published: Oct. 14, 2005
- Modified: Apr. 03, 2025
-
4.6
MEDIUMCVE-2005-3203
The manual installation of Oracle HTML DB (HTMLDB) 1.3 through 1.3.6 stores the SYS password in install.lst in plaintext, which allows local users to gain privileges.... Read more
Affected Products : html_db- Published: Oct. 14, 2005
- Modified: Apr. 03, 2025
-
5.0
MEDIUMCVE-2005-3206
iSQL*Plus (isqlplus) for Oracle9i Database Server Release 2 9.0.2.4 allows remote attackers to cause a denial of service (TNS listener stop) via an HTTP request with an sid parameter that contains a STOP command.... Read more
Affected Products : database_server- Published: Oct. 14, 2005
- Modified: Apr. 03, 2025
-
5.1
MEDIUMCVE-2005-3231
Multiple interpretation error in unspecified versions of CAT Quick Heal allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by pro... Read more
Affected Products : quick_heal- Published: Oct. 14, 2005
- Modified: Apr. 03, 2025