CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
10299 | CVE-2004-1872 | Candidate | Cross-site scripting (XSS) vulnerability in WebCT Campus Edition 4.1.1.5 allows remote attackers to inject arbitrary web script or HTML via the @import URL function in a CSS style tag. | Assigned (20050504) | None (candidate not yet proposed) | View | |
7996 | CVE-2003-1172 | Candidate | Directory traversal vulnerability in the view-source sample file in Apache Software Foundation Cocoon 2.1 and 2.2 allows remote attackers to access arbitrary files via a .. (dot dot) in the filename parameter. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10300 | CVE-2004-1873 | Candidate | SQL injection vulnerability in category.asp in A-CART Pro and A-CART 2.0 allows remote attackers to gain privileges via the catcode parameter. | Assigned (20050504) | None (candidate not yet proposed) | View | |
7997 | CVE-2003-1173 | Candidate | Centrinity FirstClass 7.1 allows remote attackers to access sensitive information by appending search to the end of the URL and checking all of the search option checkboxes and leaving the text field blank, which will return all files in the searched directory. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10301 | CVE-2004-1874 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in (1) deliver.asp and (2) billing.asp in A-CART Pro and A-CART 2.0 allow remote attackers to inject arbitrary web script or HTML via the user information forms. | Assigned (20050504) | None (candidate not yet proposed) | View |
Page 1490 of 20943, showing 5 records out of 104715 total, starting on record 7446, ending on 7450