CVE List

Id CVE No. Status Description Phase Votes Comments Actions
13530  CVE-2005-2324  Candidate  Cross-site scripting (XSS) vulnerability in Clever Copy 2.0 and 2.0a allows remote attackers to inject arbitrary web script or HTML via the searchtype or searchterm parameters to (1) results.php or (2) categorysearch.php.  Assigned (20050719)  None (candidate not yet proposed)    View
13531  CVE-2005-2325  Candidate  Clever Copy 2.0 and 2.0a allows remote attackers to obtain the full path of the web root via a direct request to (1) ticker.php, (2) menu.php, (3) banned.php, (4) endlayout.php, (5) randomhlinesblock.php, (6) showlast.php, (7) showlast5class1.php, (8) showlast5phorum.php, (9) showlast5phorumblock.php, (10) showlastforumbb2.php, or (11) showlastforumbb2block.php.  Assigned (20050719)  None (candidate not yet proposed)    View
13532  CVE-2005-2326  Candidate  Cross-site scripting (XSS) vulnerability in Clever Copy 2.0 and 2.0a allows remote attackers to inject arbitrary web script or HTML via the yr parameter to calendar.php.  Assigned (20050719)  None (candidate not yet proposed)    View
10639  CVE-2004-2213  Candidate  Mbedthis AppWeb HTTP server before 1.1.3 allows remote attackers to obtain the source code for scripts via a (1) trailing dot (".") or (2) trailing space in an HTTP request.  Assigned (20050717)  None (candidate not yet proposed)    View
10640  CVE-2004-2214  Candidate  Mbedthis AppWeb HTTP server before 1.1.3 allows remote attackers to bypass access restrictions via a URI with mixed case characters.  Assigned (20050717)  None (candidate not yet proposed)    View

Page 19086 of 20943, showing 5 records out of 104715 total, starting on record 95426, ending on 95430

Actions