CVE List

Id CVE No. Status Description Phase Votes Comments Actions
6558  CVE-2002-2176  Candidate  SQL injection vulnerability in Gender MOD 1.1.3 allows remote attackers to gain administrative access via the user_level parameter in the User Profile page.  Assigned (20051116)  None (candidate not yet proposed)    View
8094  CVE-2003-1270  Candidate  AN HTTP 1.41e allows remote attackers to cause a denial of service (borken pipe) via an HTTP request to aux.cgi with a long argument, possibly triggering a buffer overflow or MS-DOS device vulnerability.  Assigned (20051116)  None (candidate not yet proposed)    View
14750  CVE-2005-3544  Candidate  Cross-site scripting (XSS) vulnerability in u2u.php in XMB 1.9.3 allows remote attackers to inject arbitrary web script or HTML via the username parameter.  Assigned (20051116)  None (candidate not yet proposed)    View
6559  CVE-2002-2177  Candidate  BEA WebLogic Server and Express 6.1 through 7.0.0.1 buffers HTTP requests in a way that can cause BEA to send the same response for two different HTTP requests, which could allow remote attackers to obtain sensitive information that was intended for other users.  Assigned (20051116)  None (candidate not yet proposed)    View
8095  CVE-2003-1271  Candidate  Cross-site scripting vulnerability (XSS) in AN HTTP 1.41e allows remote attackers to execute arbitrary web script or HTML as other users via a URL containing the script.  Assigned (20051116)  None (candidate not yet proposed)    View

Page 18738 of 20943, showing 5 records out of 104715 total, starting on record 93686, ending on 93690

Actions