CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10299  CVE-2004-1872  Candidate  Cross-site scripting (XSS) vulnerability in WebCT Campus Edition 4.1.1.5 allows remote attackers to inject arbitrary web script or HTML via the @import URL function in a CSS style tag.  Assigned (20050504)  None (candidate not yet proposed)    View
7996  CVE-2003-1172  Candidate  Directory traversal vulnerability in the view-source sample file in Apache Software Foundation Cocoon 2.1 and 2.2 allows remote attackers to access arbitrary files via a .. (dot dot) in the filename parameter.  Assigned (20050504)  None (candidate not yet proposed)    View
10300  CVE-2004-1873  Candidate  SQL injection vulnerability in category.asp in A-CART Pro and A-CART 2.0 allows remote attackers to gain privileges via the catcode parameter.  Assigned (20050504)  None (candidate not yet proposed)    View
7997  CVE-2003-1173  Candidate  Centrinity FirstClass 7.1 allows remote attackers to access sensitive information by appending search to the end of the URL and checking all of the search option checkboxes and leaving the text field blank, which will return all files in the searched directory.  Assigned (20050504)  None (candidate not yet proposed)    View
10301  CVE-2004-1874  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in (1) deliver.asp and (2) billing.asp in A-CART Pro and A-CART 2.0 allow remote attackers to inject arbitrary web script or HTML via the user information forms.  Assigned (20050504)  None (candidate not yet proposed)    View

Page 1490 of 20943, showing 5 records out of 104715 total, starting on record 7446, ending on 7450

Actions