CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10485  CVE-2004-2059  Candidate  Multiple cross-site scripting vulnerabilities in ASPRunner 2.4 allow remote attackers inject arbitrary web script or HTML via the (1) SearchFor parameter in [TABLE-NAME]_search.asp, (2) SQL parameter in [TABLE-NAME]_edit.asp, (3) SearchFor parameter in [TABLE]_list.asp, or (4) SQL parameter in export.asp.  Assigned (20050504)  None (candidate not yet proposed)    View
10484  CVE-2004-2058  Candidate  ASPRunner 2.4 allows remote attackers to gain sensitive information via (1) hidden form fields or (2) error messages.  Assigned (20050504)  None (candidate not yet proposed)    View
10483  CVE-2004-2057  Candidate  SQL injection vulnerability in ASPRunner 2.4 allows remote attackers to execute arbitrary SQL statements.  Assigned (20050504)  None (candidate not yet proposed)    View
10482  CVE-2004-2056  Candidate  SQL injection vulnerability in action.php in Nucleus CMS 3.01 allows remote attackers execute arbitrary SQL statements via the itemid parameter.  Assigned (20050504)  None (candidate not yet proposed)    View
10481  CVE-2004-2055  Candidate  Cross-site scripting (XSS) vulnerability in search.php for PhpBB 2.0.4 and 2.0.9 allows remote attackers to inject arbitrary HTMl or web script via the search_author parameter.  Assigned (20050504)  None (candidate not yet proposed)    View

Page 18847 of 20943, showing 5 records out of 104715 total, starting on record 94231, ending on 94235

Actions