CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
12528 | CVE-2005-1322 | Candidate | Cross-site scripting (XSS) vulnerability in Horde Nag Task List Manager before 1.1.3 allows remote attackers to inject arbitrary web script or HTML via the parent"s frame page title. | Assigned (20050427) | None (candidate not yet proposed) | View | |
78064 | CVE-2015-0801 | Candidate | Mozilla Firefox before 37.0, Firefox ESR 31.x before 31.6, and Thunderbird before 31.6 allow remote attackers to bypass the Same Origin Policy and execute arbitrary JavaScript code with chrome privileges via vectors involving anchor navigation, a similar issue to CVE-2015-0818. | Assigned (20150107) | None (candidate not yet proposed) | View | |
12784 | CVE-2005-1578 | Candidate | EnCase Forensic Edition 4.18a does not support Device Configuration Overlays (DCO), which allows attackers to hide information without detection. | Assigned (20050514) | None (candidate not yet proposed) | View | |
78320 | CVE-2015-1043 | Candidate | The Host Guest File System (HGFS) in VMware Workstation 10.x before 10.0.5, VMware Player 6.x before 6.0.5, and VMware Fusion 6.x before 6.0.5 and 7.x before 7.0.1 allows guest OS users to cause a guest OS denial of service via unspecified vectors. | Assigned (20150112) | None (candidate not yet proposed) | View | |
13040 | CVE-2005-1834 | Candidate | SQL injection vulnerability in login.asp in NEXTWEB (i)Site allows remote attackers to execute arbitrary SQL commands and bypass authentication via the password field. | Assigned (20050602) | None (candidate not yet proposed) | View |
Page 19077 of 20943, showing 5 records out of 104715 total, starting on record 95381, ending on 95385