CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12515  CVE-2005-1309  Candidate  Cross-site scripting (XSS) vulnerability in bBlog 0.7.4 allows remote attackers to inject arbitrary web script or HTML via the (1) entry title field or (2) comment body text.  Assigned (20050427)  None (candidate not yet proposed)    View
78051  CVE-2015-0788  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20150107)  None (candidate not yet proposed)    View
12771  CVE-2005-1565  Candidate  Bugzilla 2.17.1 through 2.18, 2.19.1, and 2.19.2, when a user is prompted to log in while attempting to view a chart, displays the password in the URL, which may allow local users to gain sensitive information from web logs or browser history.  Assigned (20050514)  None (candidate not yet proposed)    View
78307  CVE-2015-1030  Candidate  Memory leak in the rfc2553_connect_to function in jbsocket.c in Privoxy before 3.0.22 allows remote attackers to cause a denial of service (memory consumption) via a large number of requests that are rejected because the socket limit is reached.  Assigned (20150110)  None (candidate not yet proposed)    View
13027  CVE-2005-1821  Candidate  PHP remote file inclusion vulnerability in pdl_header.inc.php in PowerDownload 3.0.2 and 3.0.3 allows remote attackers to execute arbitrary PHP code via the incdir parameter to downloads.php.  Assigned (20050601)  None (candidate not yet proposed)    View

Page 18636 of 20943, showing 5 records out of 104715 total, starting on record 93176, ending on 93180

Actions