CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
11008 | CVE-2004-2582 | Candidate | Novell iChain 2.3 includes the build number in the VIA line of the proxy server"s HTTP headers, which allows remote attackers to obtain sensitive information. | Assigned (20051128) | None (candidate not yet proposed) | View | |
76544 | CVE-2014-9243 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in WebsiteBaker 2.8.3 allow remote attackers to inject arbitrary web script or HTML via the (1) QUERY_STRING to wb/admin/admintools/tool.php or (2) section_id parameter to edit_module_files.php, (3) news/add_post.php, (4) news/modify_group.php, (5) news/modify_post.php, or (6) news/modify_settings.php in wb/modules/. | Assigned (20141203) | None (candidate not yet proposed) | View | |
11264 | CVE-2005-0058 | Candidate | Buffer overflow in the Telephony Application Programming Interface (TAPI) for Microsoft Windows 98, Windows 98 SE, Windows ME, Windows 2000, Windows XP, and Windows Server 2003 allows attackers elevate privileges or execute arbitrary code via a crafted message. | Assigned (20050111) | None (candidate not yet proposed) | View | |
76800 | CVE-2014-9499 | Candidate | Cross-site scripting (XSS) vulnerability in the Godwin"s Law module before 7.x-1.1 for Drupal, when using the dblog module, allows remote authenticated users to inject arbitrary web script or HTML via a Watchdog message. | Assigned (20150103) | None (candidate not yet proposed) | View | |
11520 | CVE-2005-0314 | Candidate | Cross-site scripting (XSS) vulnerability in user.php in Magic Winmail Server 4.0 Build 1112 allows remote attackers to inject arbitrary web script or HTML via the personal information fields. | Assigned (20050210) | None (candidate not yet proposed) | View |
Page 1173 of 20943, showing 5 records out of 104715 total, starting on record 5861, ending on 5865