CVE List

Id CVE No. Status Description Phase Votes Comments Actions
13855  CVE-2005-2649  Candidate  Cross-site scripting (XSS) vulnerability in ATutor 1.5.1 allows remote attackers to inject arbitrary web script or HTML via (1) course parameter in login.php or (2) words parameter in search.php.  Assigned (20050821)  None (candidate not yet proposed)    View
13856  CVE-2005-2650  Candidate  Cross-site scripting (XSS) vulnerability in sign.asp in Emefa Guestbook 1.2 allows remote attackers to inject arbitrary web script or HTML via the (1) name, (2) location, and (3) email parameters.  Assigned (20050821)  None (candidate not yet proposed)    View
13857  CVE-2005-2651  Candidate  gorum/prod.php in Zorum 3.5 allows remote attackers to execute arbitrary code via shell metacharacters in the argv parameter.  Assigned (20050821)  None (candidate not yet proposed)    View
13858  CVE-2005-2652  Candidate  Zorum 3.5 allows remote attackers to obtain the full installation path via direct requests to (1) gorum/notification.php, (2) user.php, (3) attach.php, (4) blacklist.php, (5) zorum/forum.php, (6) globalstat.php, (7) gorum/trace.php, (8) gorum/badwords.php, or (9) gorum/flood.php.  Assigned (20050821)  None (candidate not yet proposed)    View
13859  CVE-2005-2653  Candidate  Cross-site scripting (XSS) vulnerability in BBCaffe 2.0 allows remote attackers to inject arbitrary web script or HTML via e-mail data in a message.  Assigned (20050821)  None (candidate not yet proposed)    View

Page 18960 of 20943, showing 5 records out of 104715 total, starting on record 94796, ending on 94800

Actions