CVE List

Id CVE No. Status Description Phase Votes Comments Actions
14337  CVE-2005-3131  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in MERAK Mail Server 8.2.4r with Icewarp Web Mail 5.5.1, and possibly earlier versions, allow remote attackers to inject arbitrary web script or HTML via the (1) id parameter to blank.html, or the createdataCX parameter to (2) calendar_d.html, (3) calendar_m.html, or (4) calendar_w.html.  Assigned (20051004)  None (candidate not yet proposed)    View
79873  CVE-2015-2596  Candidate  Unspecified vulnerability in Oracle Java SE 7u80 allows remote attackers to affect integrity via unknown vectors related to Hotspot.  Assigned (20150320)  None (candidate not yet proposed)    View
14593  CVE-2005-3387  Candidate  The startup script in packages/RedHat/ntop.init in ntop before 3.2, when ntop.conf is writable by users besides root, creates temporary files insecurely, which allows remote attackers to execute arbitrary code.  Assigned (20051101)  None (candidate not yet proposed)    View
80129  CVE-2015-2852  Candidate  Cross-site request forgery (CSRF) vulnerability in the WebUI component in Blue Coat SSL Visibility Appliance SV800, SV1800, SV2800, and SV3800 3.6.x through 3.8.x before 3.8.4 allows remote attackers to hijack the authentication of administrators.  Assigned (20150403)  None (candidate not yet proposed)    View
14849  CVE-2005-3645  Candidate  phpAdsNew and phpPgAds 2.0.6 and possibly earlier versions allows remote attackers to obtain the application installation path and other sensitive information via direct requests to (1) create.php, and if display_errors is enabled, (2) lib-updates.inc.php, (3) lib-targetstats.inc.php, (4) lib-size.inc.php, (5) lib-misc-stats.inc.php, (6) lib-hourly-hosts.inc.php, (7) lib-hourly.inc.php, (8) lib-history.inc.php, and (9) graph-daily.php.  Assigned (20051117)  None (candidate not yet proposed)    View

Page 103 of 20943, showing 5 records out of 104715 total, starting on record 511, ending on 515

Actions