CVE List

Id CVE No. Status Description Phase Votes Comments Actions
76048  CVE-2014-8747  Candidate  Cross-site scripting (XSS) vulnerability in the Drupal Commons module 7.x-3.x before 7.x-3.9 for Drupal allows remote attackers to inject arbitrary web script or HTML via vectors related to content creation and activity stream messages.  Assigned (20141013)  None (candidate not yet proposed)    View
10768  CVE-2004-2342  Candidate  ChatterBox 2.0 allows remote attackers to cause a denial of service (server crash) via a malformed request to the server, as demonstrated using "aaaaaa".  Assigned (20050816)  None (candidate not yet proposed)    View
76304  CVE-2014-9003  Candidate  Cross-site request forgery (CSRF) vulnerability in Lantronix xPrintServer allows remote attackers to hijack the authentication of administrators for requests that modify configuration, as demonstrated by executing arbitrary commands using the c parameter in the rpc action.  Assigned (20141119)  None (candidate not yet proposed)    View
11024  CVE-2004-2598  Candidate  Quake II server before R1Q2, as used in multiple products, allows remote attackers to corrupt the server"s client state data structure by exiting a session without a valid disconnect command, then reconnecting, which prevents a mod from being notified of changes in the client state. NOTE: the impact of this issue will vary depending on which mod is being used.  Assigned (20051129)  None (candidate not yet proposed)    View
76560  CVE-2014-9259  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20141204)  None (candidate not yet proposed)    View

Page 1288 of 20943, showing 5 records out of 104715 total, starting on record 6436, ending on 6440

Actions