CVE List

Id CVE No. Status Description Phase Votes Comments Actions
76003  CVE-2014-8702  Candidate  Wonder CMS 2014 allows remote attackers to obtain sensitive information by logging into the application with an array for the password, which reveals the installation path in an error message.  Assigned (20141109)  None (candidate not yet proposed)    View
10723  CVE-2004-2297  Candidate  The Reviews module in PHP-Nuke 6.0 to 7.3 allows remote attackers to cause a denial of service (CPU and memory consumption) via a large, out-of-range score parameter.  Assigned (20050804)  None (candidate not yet proposed)    View
76259  CVE-2014-8958  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin 4.0.x before 4.0.10.6, 4.1.x before 4.1.14.7, and 4.2.x before 4.2.12 allow remote authenticated users to inject arbitrary web script or HTML via a crafted (1) database, (2) table, or (3) column name that is improperly handled during rendering of the table browse page; a crafted ENUM value that is improperly handled during rendering of the (4) table print view or (5) zoom search page; or (6) a crafted pma_fontsize cookie that is improperly handled during rendering of the home page.  Assigned (20141118)  None (candidate not yet proposed)    View
10979  CVE-2004-2553  Candidate  The Ignition Project ignitionServer 0.1.2 through 0.1.2-R2 allows remote authenticated users with local IRC operator privileges to obtain global IRC operator privileges by using the unofficial umode command with the +ORD argument.  Assigned (20051121)  None (candidate not yet proposed)    View
76515  CVE-2014-9214  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20141202)  None (candidate not yet proposed)    View

Page 18633 of 20943, showing 5 records out of 104715 total, starting on record 93161, ending on 93165

Actions