CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
13038 | CVE-2005-1832 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in MyBulletinBoard (MyBB) 1.00 RC4 and earlier allow remote attackers to execute arbitrary web script or HTML via the (1) forums, (2) version, or (3) limit parameter to misc.php, (4) page or (5) datecut parameter to forumdisplay.php, (6) username, (7) email, or (8) email2 parameter to member.php, (9) page or (10) usersearch parameter to memberlist.php, (11) pid or (12) tid parameter to showthread.php, or (13) tid parameter to printthread.php. | Assigned (20050602) | None (candidate not yet proposed) | View | |
78574 | CVE-2015-1297 | Candidate | The WebRequest API implementation in extensions/browser/api/web_request/web_request_api.cc in Google Chrome before 45.0.2454.85 does not properly consider a request"s source before accepting the request, which allows remote attackers to bypass intended access restrictions via a crafted (1) app or (2) extension. | Assigned (20150121) | None (candidate not yet proposed) | View | |
13294 | CVE-2005-2088 | Candidate | The Apache HTTP server before 1.3.34, and 2.0.x before 2.0.55, when acting as an HTTP proxy, allows remote attackers to poison the web cache, bypass web application firewall protection, and conduct XSS attacks via an HTTP request with both a "Transfer-Encoding: chunked" header and a Content-Length header, which causes Apache to incorrectly handle and forward the body of the request in a way that causes the receiving server to process it as a separate HTTP request, aka "HTTP Request Smuggling." | Assigned (20050630) | None (candidate not yet proposed) | View | |
78830 | CVE-2015-1553 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20150207) | None (candidate not yet proposed) | View | |
13550 | CVE-2005-2344 | Candidate | The BlackBerry Attachment Service in Research in Motion (RIM) BlackBerry Enterprise Server (BES) 4.0 to version 4.0 Service Pack 2 allows attackers to cause a denial of service via a malformed Portable Network Graphics (PNG) file that triggers a heap-based buffer overflow. | Assigned (20050721) | None (candidate not yet proposed) | View |
Page 18919 of 20943, showing 5 records out of 104715 total, starting on record 94591, ending on 94595