CVE List

Id CVE No. Status Description Phase Votes Comments Actions
14187  CVE-2005-2981  Candidate  Cross-site scripting (XSS) vulnerability in Orion 1.3.8 and 1.4.5 allows remote attackers to inject arbitrary web script or HTML via the URL, which is not properly quoted in the resulting 404 error page.  Assigned (20050919)  None (candidate not yet proposed)    View
14188  CVE-2005-2982  Candidate  Cross-site scripting (XSS) vulnerability in CompaqHTTPServer 2.1 allows remote attackers to inject arbitrary web script or HTML via the URL, which is not properly quoted in the resulting 404 error page.  Assigned (20050919)  None (candidate not yet proposed)    View
14189  CVE-2005-2983  Candidate  SQL injection vulnerability in Oracle Reports that use Lexical References allows remote attackers to execute arbitrary SQL commands via the values in the parameter form that appears when the paramform parameter is set to yes.  Assigned (20050919)  None (candidate not yet proposed)    View
14190  CVE-2005-2984  Candidate  Avocent CCM console server running firmware 2.1 CCM4850 allows remote authenticated attackers to bypass port restrictions by connecting to the server via SSH and using the connect command to access the serial port.  Assigned (20050919)  None (candidate not yet proposed)    View
14191  CVE-2005-2985  Candidate  SQL injection vulnerability in search_result.php in AEwebworks aeDating Script 4.0 and earlier allows remote attackers to execute arbitrary SQL statements via the Country parameter.  Assigned (20050919)  None (candidate not yet proposed)    View

Page 18895 of 20943, showing 5 records out of 104715 total, starting on record 94471, ending on 94475

Actions