CVE List

Id CVE No. Status Description Phase Votes Comments Actions
36627  CVE-2008-6510  Candidate  Cross-site scripting (XSS) vulnerability in login.jsp in the Admin Console in Openfire 3.6.0a and earlier allows remote attackers to inject arbitrary web script or HTML via the url parameter.  Assigned (20090323)  None (candidate not yet proposed)    View
102163  CVE-2017-5343  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170111)  None (candidate not yet proposed)    View
36883  CVE-2008-6766  Candidate  cart_save.php in ViArt Shop (aka Shopping Cart) 3.5 allows remote attackers to cause a denial of service (excessive shopping carts) via a flood of requests.  Assigned (20090428)  None (candidate not yet proposed)    View
102419  CVE-2017-5599  Candidate  An issue was discovered in eClinicalWorks Patient Portal 7.0 build 13. This is a reflected Cross Site Scripting vulnerability which affects the raceMasterList.jsp page within the Patient Portal. Inserted payload is rendered within the Patient Portal and the raceMasterList.jsp page does not require authentication. The vulnerability can be used to extract sensitive information or perform attacks against the user"s browser. The vulnerability affects the raceMasterList.jsp page and the following parameter: race.  Assigned (20170127)  None (candidate not yet proposed)    View
37139  CVE-2008-7022  Candidate  Insecure method vulnerability in ChilkatMail_v7_9.dll in the Chilkat Software IMAP ActiveX control (ChilkatMail2.ChilkatMailMan2.1) allows remote attackers to execute arbitrary programs via the LoadXmlEmail method.  Assigned (20090821)  None (candidate not yet proposed)    View

Page 1588 of 20943, showing 5 records out of 104715 total, starting on record 7936, ending on 7940

Actions