CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9998  CVE-2004-1570  Candidate  SQL injection vulnerability in bBlog 0.7.2 and 0.7.3 allows remote attackers to execute arbitrary SQL commands via the p parameter.  Assigned (20050220)  None (candidate not yet proposed)    View
75534  CVE-2014-8233  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20141010)  None (candidate not yet proposed)    View
10254  CVE-2004-1827  Candidate  Cross-site scripting (XSS) vulnerability in YaBB 1 Gold(SP1.3) and YaBB SE 1.5.1 Final allows remote attackers to inject arbitrary web script via the background:url property in (1) glow or (2) shadow tags.  Assigned (20050504)  None (candidate not yet proposed)    View
75790  CVE-2014-8489  Candidate  Open redirect vulnerability in startSSO.ping in the SP Endpoints in Ping Identity PingFederate 6.10.1 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the TargetResource parameter.  Assigned (20141026)  None (candidate not yet proposed)    View
10510  CVE-2004-2084  Candidate  Cross-site scripting (XSS) vulnerability in search.php in JShop E-Commerce Server allows remote attackers to inject arbitrary web script or HTML via the xSearch parameter.  Assigned (20050519)  None (candidate not yet proposed)    View

Page 1127 of 20943, showing 5 records out of 104715 total, starting on record 5631, ending on 5635

Actions