CVE List

Id CVE No. Status Description Phase Votes Comments Actions
76305  CVE-2014-9004  Candidate  Cross-site scripting (XSS) vulnerability in vldPersonals before 2.7.1 allows remote attackers to inject arbitrary web script or HTML via the id parameter in a member_profile action to index.php.  Assigned (20141119)  None (candidate not yet proposed)    View
11025  CVE-2004-2599  Candidate  Multiple buffer overflows in Quake II server before R1Q2, as used in multiple products, allow local users to cause a denial of service (application crash) via the server console or rcon.  Assigned (20051129)  None (candidate not yet proposed)    View
76561  CVE-2014-9260  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20141204)  None (candidate not yet proposed)    View
11281  CVE-2005-0075  Candidate  prefs.php in SquirrelMail before 1.4.4, with register_globals enabled, allows remote attackers to inject local code into the SquirrelMail code via custom preference handlers.  Assigned (20050114)  None (candidate not yet proposed)    View
76817  CVE-2014-9516  Candidate  Cross-site scripting (XSS) vulnerability in Social Microblogging PRO 1.5 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to the default URI, related to the "Web Site" input in the Profile section.  Assigned (20150105)  None (candidate not yet proposed)    View

Page 1368 of 20943, showing 5 records out of 104715 total, starting on record 6836, ending on 6840

Actions