CVE List

Id CVE No. Status Description Phase Votes Comments Actions
69606  CVE-2014-2311  Candidate  SQL injection vulnerability in modx.class.php in MODX Revolution 2.0.0 before 2.2.13 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.  Assigned (20140306)  None (candidate not yet proposed)    View
4326  CVE-2001-1526  Candidate  Cross-site scripting (XSS) vulnerability in the comments action in index.php in easyNews 1.5 and earlier allows remote attackers to inject arbitrary web script or HTML via the zeit parameter.  Assigned (20050714)  None (candidate not yet proposed)    View
69862  CVE-2014-2567  Candidate  The OpenConnectionTask::handleStateHelper function in Imap/Tasks/OpenConnectionTask.cpp in Trojita before 0.4.1 allows man-in-the-middle attackers to trigger use of cleartext for saving a message into a (1) sent or (2) draft folder via a PREAUTH response that prevents later use of the STARTTLS command.  Assigned (20140320)  None (candidate not yet proposed)    View
70118  CVE-2014-2823  Candidate  Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-2810, CVE-2014-2811, CVE-2014-2822, and CVE-2014-4057.  Assigned (20140410)  None (candidate not yet proposed)    View
4838  CVE-2002-0446  Candidate  categorie.php3 in Black Tie Project (BTP) 0.4b through 0.5b allows remote attackers to determine the absolute path of the web server via an invalid category ID (cid) parameter, which leaks the pathname in an error message.  Proposed (20020611)  ACCEPT(2) Cole, Frech | NOOP(3) Cox, Foat, Wall | REVIEWING(1) Green    View

Page 18880 of 20943, showing 5 records out of 104715 total, starting on record 94396, ending on 94400

Actions