CVE List

Id CVE No. Status Description Phase Votes Comments Actions
76802  CVE-2014-9501  Candidate  Cross-site scripting (XSS) vulnerability in the Poll Chart Block module 7.x-1.x before 7.x-1.2 for Drupal allows remote authenticated users to inject arbitrary web script or HTML via a poll node title.  Assigned (20150103)  None (candidate not yet proposed)    View
11522  CVE-2005-0316  Candidate  WebWasher Classic 2.2.1 and 3.3, when running in server mode, does not properly drop CONNECT requests to the localhost from external systems, which could allow remote attackers to bypass intended access restrictions.  Assigned (20050210)  None (candidate not yet proposed)    View
77058  CVE-2014-9757  Candidate  The Ignite Realtime Smack XMPP API, as used in Atlassian Bamboo before 5.9.9 and 5.10.x before 5.10.0, allows remote configured XMPP servers to execute arbitrary Java code via serialized data in an XMPP message.  Assigned (20151125)  None (candidate not yet proposed)    View
11778  CVE-2005-0572  Candidate  index.php in phpWebSite 0.10.0 and earlier allows remote attackers to obtain sensitive information via an invalid SEA_search_module parameter, which reveals the path in a PHP error message.  Assigned (20050227)  None (candidate not yet proposed)    View
77314  CVE-2015-0051  Candidate  Microsoft Internet Explorer 8 allows remote attackers to bypass the ASLR protection mechanism via a crafted web site, aka "Internet Explorer ASLR Bypass Vulnerability."  Assigned (20141118)  None (candidate not yet proposed)    View

Page 176 of 20943, showing 5 records out of 104715 total, starting on record 876, ending on 880

Actions