CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
76802 | CVE-2014-9501 | Candidate | Cross-site scripting (XSS) vulnerability in the Poll Chart Block module 7.x-1.x before 7.x-1.2 for Drupal allows remote authenticated users to inject arbitrary web script or HTML via a poll node title. | Assigned (20150103) | None (candidate not yet proposed) | View | |
11522 | CVE-2005-0316 | Candidate | WebWasher Classic 2.2.1 and 3.3, when running in server mode, does not properly drop CONNECT requests to the localhost from external systems, which could allow remote attackers to bypass intended access restrictions. | Assigned (20050210) | None (candidate not yet proposed) | View | |
77058 | CVE-2014-9757 | Candidate | The Ignite Realtime Smack XMPP API, as used in Atlassian Bamboo before 5.9.9 and 5.10.x before 5.10.0, allows remote configured XMPP servers to execute arbitrary Java code via serialized data in an XMPP message. | Assigned (20151125) | None (candidate not yet proposed) | View | |
11778 | CVE-2005-0572 | Candidate | index.php in phpWebSite 0.10.0 and earlier allows remote attackers to obtain sensitive information via an invalid SEA_search_module parameter, which reveals the path in a PHP error message. | Assigned (20050227) | None (candidate not yet proposed) | View | |
77314 | CVE-2015-0051 | Candidate | Microsoft Internet Explorer 8 allows remote attackers to bypass the ASLR protection mechanism via a crafted web site, aka "Internet Explorer ASLR Bypass Vulnerability." | Assigned (20141118) | None (candidate not yet proposed) | View |
Page 176 of 20943, showing 5 records out of 104715 total, starting on record 876, ending on 880