CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
11693 | CVE-2005-0487 | Candidate | Cross-site scripting (XSS) vulnerability in index.php for Kayako ESupport 2.3.1, and possibly other versions, allows remote attackers to inject arbitrary HTML and web script via the nav parameter. | Assigned (20050219) | None (candidate not yet proposed) | View | |
9984 | CVE-2004-1556 | Candidate | MyWebServer 1.0.3 allows remote attackers to cause a denial of service (application crash) via a large number of connections within a short time. | Assigned (20050220) | None (candidate not yet proposed) | View | |
9985 | CVE-2004-1557 | Candidate | MyWebServer 1.0.3 allows remote attackers to bypass authentication, modify configuration, and read arbitrary files via a direct HTTP request to (1) /admin or (2) ServerProperties.html. | Assigned (20050220) | None (candidate not yet proposed) | View | |
9986 | CVE-2004-1558 | Candidate | Multiple stack-based buffer overflows in YPOPs! (aka YahooPOPS) 0.4 through 0.6 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long (1) POP3 USER command or (2) SMTP request. | Assigned (20050220) | None (candidate not yet proposed) | View | |
9987 | CVE-2004-1559 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in Wordpress 1.2 allow remote attackers to inject arbitrary web script or HTML via the (1) redirect_to, text, popupurl, or popuptitle parameters to wp-login.php, (2) redirect_url parameter to admin-header.php, (3) popuptitle, popupurl, content, or post_title parameters to bookmarklet.php, (4) cat_ID parameter to categories.php, (5) s parameter to edit.php, or (6) s or mode parameter to edit-comments.php. | Assigned (20050220) | None (candidate not yet proposed) | View |
Page 1191 of 20943, showing 5 records out of 104715 total, starting on record 5951, ending on 5955