CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
10485 | CVE-2004-2059 | Candidate | Multiple cross-site scripting vulnerabilities in ASPRunner 2.4 allow remote attackers inject arbitrary web script or HTML via the (1) SearchFor parameter in [TABLE-NAME]_search.asp, (2) SQL parameter in [TABLE-NAME]_edit.asp, (3) SearchFor parameter in [TABLE]_list.asp, or (4) SQL parameter in export.asp. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10484 | CVE-2004-2058 | Candidate | ASPRunner 2.4 allows remote attackers to gain sensitive information via (1) hidden form fields or (2) error messages. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10483 | CVE-2004-2057 | Candidate | SQL injection vulnerability in ASPRunner 2.4 allows remote attackers to execute arbitrary SQL statements. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10482 | CVE-2004-2056 | Candidate | SQL injection vulnerability in action.php in Nucleus CMS 3.01 allows remote attackers execute arbitrary SQL statements via the itemid parameter. | Assigned (20050504) | None (candidate not yet proposed) | View | |
10481 | CVE-2004-2055 | Candidate | Cross-site scripting (XSS) vulnerability in search.php for PhpBB 2.0.4 and 2.0.9 allows remote attackers to inject arbitrary HTMl or web script via the search_author parameter. | Assigned (20050504) | None (candidate not yet proposed) | View |
Page 18847 of 20943, showing 5 records out of 104715 total, starting on record 94231, ending on 94235