CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
10637 | CVE-2004-2211 | Candidate | Cross-site scripting (XSS) vulnerability in AliveSites Forums 2.0 allows remote attackers to inject arbitrary web script or HTML via the (1) forum_id, (2) method, or (3) forum_title parameters to post.asp, (4) the forum_title parameter to forum.asp, or (5) the id parameter to post.asp. | Assigned (20050711) | None (candidate not yet proposed) | View | |
10638 | CVE-2004-2212 | Candidate | SQL injection vulnerability in forum.asp in AliveSites Forums 2.0 allows remote attackers to execute arbitrary SQL commands via the forum_id parameter. | Assigned (20050711) | None (candidate not yet proposed) | View | |
13419 | CVE-2005-2213 | Candidate | Buffer overflow in the mms_interp_header function in mms.c in MMS Ripper before 0.6.4 might allow remote attackers to execute arbitrary code via a file with more than 20 streams. | Assigned (20050712) | None (candidate not yet proposed) | View | |
13420 | CVE-2005-2214 | Candidate | apt-setup in Debian GNU/Linux installs the apt.conf file with insecure permissions, which allows local users to obtain sensitive information such as passwords. | Assigned (20050712) | None (candidate not yet proposed) | View | |
13421 | CVE-2005-2215 | Candidate | Cross-site scripting (XSS) vulnerability in MediaWiki before 1.4.x before 1.4.6 and 1.5 before 1.5beta3 allows remote attackers to inject arbitrary web script or HTML via a parameter in the page move template, a different vulnerability than CVE-2005-1888. | Assigned (20050712) | None (candidate not yet proposed) | View |
Page 1797 of 20943, showing 5 records out of 104715 total, starting on record 8981, ending on 8985