CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
80903 | CVE-2015-3626 | Candidate | Cross-site scripting (XSS) vulnerability in the DHCP Monitor page in the Web User Interface (WebUI) in Fortinet FortiOS before 5.2.4 on FortiGate devices allows remote attackers to inject arbitrary web script or HTML via a crafted hostname. | Assigned (20150430) | None (candidate not yet proposed) | View | |
15623 | CVE-2005-4419 | Candidate | Multiple SQL injection vulnerabilities in CategoryResults.cfm in Honeycomb Archive and Honeycomb Archive Enterprise 3.0 allow remote attackers to execute arbitrary SQL commands via the (1) series, (2) cat_parent, (3) cat, and (4) div parameters. | Assigned (20051220) | None (candidate not yet proposed) | View | |
81159 | CVE-2015-3882 | Candidate | qdPM 8.3 allows remote attackers to obtain sensitive information via invalid ID value to index.php/users/info/id/[ID], which reveals the installation path in an error message. | Assigned (20150512) | None (candidate not yet proposed) | View | |
15879 | CVE-2005-4675 | Candidate | Cross-site scripting (XSS) vulnerability in list.php in Complete PHP Counter allows remote attackers to inject arbitrary web script or HTML via the c parameter. | Assigned (20060127) | None (candidate not yet proposed) | View | |
81415 | CVE-2015-4138 | Candidate | The WebUI component in Blue Coat SSL Visibility Appliance SV800, SV1800, SV2800, and SV3800 3.6.x through 3.8.x before 3.8.4 does not include the HTTPOnly flag in a Set-Cookie header for the administrator"s cookie, which makes it easier for remote attackers to obtain potentially sensitive information via script access to this cookie, a different vulnerability than CVE-2015-2855. | Assigned (20150530) | None (candidate not yet proposed) | View |
Page 1721 of 20943, showing 5 records out of 104715 total, starting on record 8601, ending on 8605