CVE List

Id CVE No. Status Description Phase Votes Comments Actions
65045  CVE-2013-5098  Candidate  Cross-site scripting (XSS) vulnerability in admin/admin.php in the Download Monitor plugin before 3.3.6.2 for WordPress allows remote attackers to inject arbitrary web script or HTML via the sort parameter, a different vulnerability than CVE-2013-3262.  Assigned (20130809)  None (candidate not yet proposed)    View
65301  CVE-2013-5354  Candidate  Multiple SQL injection vulnerabilities in Sharetronix 3.1.1 allow remote attackers to execute arbitrary SQL commands via the (1) fb_user_id or (2) tw_user_id parameter to signup.  Assigned (20130821)  None (candidate not yet proposed)    View
22  CVE-1999-0022  Entry  Local user gains root privileges via buffer overflow in rdist, via expstr() function.        View
65558  CVE-2013-5611  Candidate  Mozilla Firefox before 26.0 does not properly remove the Application Installation doorhanger, which makes it easier for remote attackers to spoof a Web App installation site by controlling the timing of page navigation.  Assigned (20130826)  None (candidate not yet proposed)    View
278  CVE-1999-0279  Entry  Excite for Web Servers (EWS) allows remote command execution via shell metacharacters.        View

Page 1772 of 20943, showing 5 records out of 104715 total, starting on record 8856, ending on 8860

Actions