CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
13530 | CVE-2005-2324 | Candidate | Cross-site scripting (XSS) vulnerability in Clever Copy 2.0 and 2.0a allows remote attackers to inject arbitrary web script or HTML via the searchtype or searchterm parameters to (1) results.php or (2) categorysearch.php. | Assigned (20050719) | None (candidate not yet proposed) | View | |
13531 | CVE-2005-2325 | Candidate | Clever Copy 2.0 and 2.0a allows remote attackers to obtain the full path of the web root via a direct request to (1) ticker.php, (2) menu.php, (3) banned.php, (4) endlayout.php, (5) randomhlinesblock.php, (6) showlast.php, (7) showlast5class1.php, (8) showlast5phorum.php, (9) showlast5phorumblock.php, (10) showlastforumbb2.php, or (11) showlastforumbb2block.php. | Assigned (20050719) | None (candidate not yet proposed) | View | |
13532 | CVE-2005-2326 | Candidate | Cross-site scripting (XSS) vulnerability in Clever Copy 2.0 and 2.0a allows remote attackers to inject arbitrary web script or HTML via the yr parameter to calendar.php. | Assigned (20050719) | None (candidate not yet proposed) | View | |
10639 | CVE-2004-2213 | Candidate | Mbedthis AppWeb HTTP server before 1.1.3 allows remote attackers to obtain the source code for scripts via a (1) trailing dot (".") or (2) trailing space in an HTTP request. | Assigned (20050717) | None (candidate not yet proposed) | View | |
10640 | CVE-2004-2214 | Candidate | Mbedthis AppWeb HTTP server before 1.1.3 allows remote attackers to bypass access restrictions via a URI with mixed case characters. | Assigned (20050717) | None (candidate not yet proposed) | View |
Page 19086 of 20943, showing 5 records out of 104715 total, starting on record 95426, ending on 95430