CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12092  CVE-2005-0886  Candidate  Cross-site scripting (XSS) vulnerability in Invision Power Board 2.0.2 and earlier allows remote attackers to inject arbitrary web script or HTML via an HTTP POST request.  Assigned (20050326)  None (candidate not yet proposed)    View
12093  CVE-2005-0887  Candidate  Eval injection vulnerability in Double Choco Latte before 0.9.4.3 allows remote attackers to execute arbitrary PHP code via the menuAction variable in (1) functions.inc.php or (2) main.php, which causes code to be injected into an eval statement.  Assigned (20050326)  None (candidate not yet proposed)    View
12094  CVE-2005-0888  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in functions.inc.php for Double Choco Latte 0.9.4.3 allow remote attackers to inject arbitrary web script or HTML via the (1) class or (2) method name.  Assigned (20050326)  None (candidate not yet proposed)    View
12095  CVE-2005-0889  Candidate  Cross-site scripting (XSS) vulnerability in index.php for Dream4 Koobi CMS 4.2.3 allows remote attackers to inject arbitrary web script or HTML via the area parameter.  Assigned (20050326)  None (candidate not yet proposed)    View
12096  CVE-2005-0890  Candidate  SQL injection vulnerability in Dream4 Koobi CMS 4.2.3 allows remote attackers to execute arbitrary SQL commands via the area parameter.  Assigned (20050326)  None (candidate not yet proposed)    View

Page 1335 of 20943, showing 5 records out of 104715 total, starting on record 6671, ending on 6675

Actions