CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11693  CVE-2005-0487  Candidate  Cross-site scripting (XSS) vulnerability in index.php for Kayako ESupport 2.3.1, and possibly other versions, allows remote attackers to inject arbitrary HTML and web script via the nav parameter.  Assigned (20050219)  None (candidate not yet proposed)    View
9984  CVE-2004-1556  Candidate  MyWebServer 1.0.3 allows remote attackers to cause a denial of service (application crash) via a large number of connections within a short time.  Assigned (20050220)  None (candidate not yet proposed)    View
9985  CVE-2004-1557  Candidate  MyWebServer 1.0.3 allows remote attackers to bypass authentication, modify configuration, and read arbitrary files via a direct HTTP request to (1) /admin or (2) ServerProperties.html.  Assigned (20050220)  None (candidate not yet proposed)    View
9986  CVE-2004-1558  Candidate  Multiple stack-based buffer overflows in YPOPs! (aka YahooPOPS) 0.4 through 0.6 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long (1) POP3 USER command or (2) SMTP request.  Assigned (20050220)  None (candidate not yet proposed)    View
9987  CVE-2004-1559  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in Wordpress 1.2 allow remote attackers to inject arbitrary web script or HTML via the (1) redirect_to, text, popupurl, or popuptitle parameters to wp-login.php, (2) redirect_url parameter to admin-header.php, (3) popuptitle, popupurl, content, or post_title parameters to bookmarklet.php, (4) cat_ID parameter to categories.php, (5) s parameter to edit.php, or (6) s or mode parameter to edit-comments.php.  Assigned (20050220)  None (candidate not yet proposed)    View

Page 1191 of 20943, showing 5 records out of 104715 total, starting on record 5951, ending on 5955

Actions