CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11664  CVE-2005-0458  Candidate  Cross-site scripting (XSS) vulnerability in contact_us.php in osCommerce 2.2-MS2 allows remote attackers to inject arbitrary web script or HTML via the enquiry parameter.  Assigned (20050217)  None (candidate not yet proposed)    View
11665  CVE-2005-0459  Candidate  phpMyAdmin 2.6.2-dev, and possibly earlier versions, allows remote attackers to determine the full path of the web root via a direct request to select_lang.lib.php, which reveals the path in a PHP error message.  Assigned (20050217)  None (candidate not yet proposed)    View
11666  CVE-2005-0460  Candidate  index.php in MercuryBoard 1.0.x and 1.1.x allows remote attackers to obtain sensitive information by setting the debug parameter.  Assigned (20050217)  None (candidate not yet proposed)    View
11667  CVE-2005-0461  Candidate  Unknown vulnerability in NewsBruiser 2.x before 2.6.1 allows remote attackers to "take actions on comments."  Assigned (20050217)  None (candidate not yet proposed)    View
11668  CVE-2005-0462  Candidate  Cross-site scripting (XSS) vulnerability in MercuryBoard 1.0.x and 1.1.x allows remote attackers to inject arbitrary HTML and web script via the f parameter.  Assigned (20050217)  None (candidate not yet proposed)    View

Page 1174 of 20943, showing 5 records out of 104715 total, starting on record 5866, ending on 5870

Actions