CVE List

Id CVE No. Status Description Phase Votes Comments Actions
76307  CVE-2014-9006  Candidate  Monstra 3.0.1 and earlier uses a cookie to track how many login attempts have been attempted, which allows remote attackers to conduct brute force login attacks by deleting the login_attempts cookie or setting it to certain values.  Assigned (20141119)  None (candidate not yet proposed)    View
11027  CVE-2004-2601  Candidate  PHP remote file inclusion vulnerability in UberTec Help Center Live (HCL) allows remote attackers to read local files and possibly execute PHP code via a URL in the SKIN_inner parameter to inc/skin.php.  Assigned (20051129)  None (candidate not yet proposed)    View
76563  CVE-2014-9262  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20141204)  None (candidate not yet proposed)    View
11283  CVE-2005-0077  Candidate  The DBI library (libdbi-perl) for Perl allows local users to overwrite arbitrary files via a symlink attack on a temporary PID file.  Assigned (20050114)  None (candidate not yet proposed)    View
76819  CVE-2014-9518  Candidate  Cross-site scripting (XSS) vulnerability in login.cgi in D-Link router DIR-655 (rev Bx) with firmware before 2.12b01 allows remote attackers to inject arbitrary web script or HTML via the html_response_page parameter.  Assigned (20150105)  None (candidate not yet proposed)    View

Page 1513 of 20943, showing 5 records out of 104715 total, starting on record 7561, ending on 7565

Actions