CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
12515 | CVE-2005-1309 | Candidate | Cross-site scripting (XSS) vulnerability in bBlog 0.7.4 allows remote attackers to inject arbitrary web script or HTML via the (1) entry title field or (2) comment body text. | Assigned (20050427) | None (candidate not yet proposed) | View | |
78051 | CVE-2015-0788 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20150107) | None (candidate not yet proposed) | View | |
12771 | CVE-2005-1565 | Candidate | Bugzilla 2.17.1 through 2.18, 2.19.1, and 2.19.2, when a user is prompted to log in while attempting to view a chart, displays the password in the URL, which may allow local users to gain sensitive information from web logs or browser history. | Assigned (20050514) | None (candidate not yet proposed) | View | |
78307 | CVE-2015-1030 | Candidate | Memory leak in the rfc2553_connect_to function in jbsocket.c in Privoxy before 3.0.22 allows remote attackers to cause a denial of service (memory consumption) via a large number of requests that are rejected because the socket limit is reached. | Assigned (20150110) | None (candidate not yet proposed) | View | |
13027 | CVE-2005-1821 | Candidate | PHP remote file inclusion vulnerability in pdl_header.inc.php in PowerDownload 3.0.2 and 3.0.3 allows remote attackers to execute arbitrary PHP code via the incdir parameter to downloads.php. | Assigned (20050601) | None (candidate not yet proposed) | View |
Page 18636 of 20943, showing 5 records out of 104715 total, starting on record 93176, ending on 93180