CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
6558 | CVE-2002-2176 | Candidate | SQL injection vulnerability in Gender MOD 1.1.3 allows remote attackers to gain administrative access via the user_level parameter in the User Profile page. | Assigned (20051116) | None (candidate not yet proposed) | View | |
8094 | CVE-2003-1270 | Candidate | AN HTTP 1.41e allows remote attackers to cause a denial of service (borken pipe) via an HTTP request to aux.cgi with a long argument, possibly triggering a buffer overflow or MS-DOS device vulnerability. | Assigned (20051116) | None (candidate not yet proposed) | View | |
14750 | CVE-2005-3544 | Candidate | Cross-site scripting (XSS) vulnerability in u2u.php in XMB 1.9.3 allows remote attackers to inject arbitrary web script or HTML via the username parameter. | Assigned (20051116) | None (candidate not yet proposed) | View | |
6559 | CVE-2002-2177 | Candidate | BEA WebLogic Server and Express 6.1 through 7.0.0.1 buffers HTTP requests in a way that can cause BEA to send the same response for two different HTTP requests, which could allow remote attackers to obtain sensitive information that was intended for other users. | Assigned (20051116) | None (candidate not yet proposed) | View | |
8095 | CVE-2003-1271 | Candidate | Cross-site scripting vulnerability (XSS) in AN HTTP 1.41e allows remote attackers to execute arbitrary web script or HTML as other users via a URL containing the script. | Assigned (20051116) | None (candidate not yet proposed) | View |
Page 18738 of 20943, showing 5 records out of 104715 total, starting on record 93686, ending on 93690