CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
76305 | CVE-2014-9004 | Candidate | Cross-site scripting (XSS) vulnerability in vldPersonals before 2.7.1 allows remote attackers to inject arbitrary web script or HTML via the id parameter in a member_profile action to index.php. | Assigned (20141119) | None (candidate not yet proposed) | View | |
11025 | CVE-2004-2599 | Candidate | Multiple buffer overflows in Quake II server before R1Q2, as used in multiple products, allow local users to cause a denial of service (application crash) via the server console or rcon. | Assigned (20051129) | None (candidate not yet proposed) | View | |
76561 | CVE-2014-9260 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20141204) | None (candidate not yet proposed) | View | |
11281 | CVE-2005-0075 | Candidate | prefs.php in SquirrelMail before 1.4.4, with register_globals enabled, allows remote attackers to inject local code into the SquirrelMail code via custom preference handlers. | Assigned (20050114) | None (candidate not yet proposed) | View | |
76817 | CVE-2014-9516 | Candidate | Cross-site scripting (XSS) vulnerability in Social Microblogging PRO 1.5 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to the default URI, related to the "Web Site" input in the Profile section. | Assigned (20150105) | None (candidate not yet proposed) | View |
Page 1368 of 20943, showing 5 records out of 104715 total, starting on record 6836, ending on 6840