CVE List

Id CVE No. Status Description Phase Votes Comments Actions
77794  CVE-2015-0531  Candidate  EMC SourceOne Email Management before 7.2 does not have a lockout mechanism for invalid login attempts, which makes it easier for remote attackers to obtain access via a brute-force attack.  Assigned (20141217)  None (candidate not yet proposed)    View
12514  CVE-2005-1308  Candidate  SqWebMail allows remote attackers to inject arbitrary web script or HTML via CRLF sequences in the redirect parameter followed by the desired script or HTML.  Assigned (20050427)  None (candidate not yet proposed)    View
78050  CVE-2015-0787  Candidate  XSS in NetIQ Designer for Identity Manager before 4.5.3 allows remote attackers to inject arbitrary HTML code via the accessMgrDN value of the forgotUser.do CGI.  Assigned (20150107)  None (candidate not yet proposed)    View
12770  CVE-2005-1564  Candidate  post_bug.cgi in Bugzilla 2.10 through 2.18, 2.19.1, and 2.19.2 allows remote authenticated users to "enter bugs into products that are closed for bug entry" by modifying the URL to specify the name of the product.  Assigned (20050514)  None (candidate not yet proposed)    View
78306  CVE-2015-1029  Candidate  The puppetlabs-stdlib module 2.1 through 3.0 and 4.1.0 through 4.5.x before 4.5.1 for Puppet 2.8.8 and earlier allows remote authenticated users to gain privileges or obtain sensitive information by prepopulating the fact cache.  Assigned (20150110)  None (candidate not yet proposed)    View

Page 18608 of 20943, showing 5 records out of 104715 total, starting on record 93036, ending on 93040

Actions