CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
10582 | CVE-2004-2156 | Candidate | Multiple unknown vulnerabilities in Online Recruitment Agency 1.0 have unknown impact and attack vectors. | Assigned (20050710) | None (candidate not yet proposed) | View | |
13398 | CVE-2005-2192 | Candidate | SimplePHPBlog 0.4.0 stores password hashes in config/password.txt with insufficient access control, which allows remote attackers to obtain passwords via a brute force attack. | Assigned (20050710) | None (candidate not yet proposed) | View | |
10583 | CVE-2004-2157 | Candidate | Cross-site scripting (XSS) vulnerability in Comment.php in Serendipity 0.7 beta1, and possibly other versions before 0.7-beta3, allows remote attackers to inject arbitrary HTML and PHP code via the (1) email or (2) username field. | Assigned (20050710) | None (candidate not yet proposed) | View | |
13399 | CVE-2005-2193 | Candidate | SQL injection vulnerability in the user profile edit module in profile.php for PunBB 1.2.5 and earlier allows remote attackers to execute arbitrary SQL statements via the temp array, which is not initialized before it is used and prevents the attacker-supplied portions of the array from being properly escaped. | Assigned (20050710) | None (candidate not yet proposed) | View | |
10584 | CVE-2004-2158 | Candidate | SQL injection vulnerability in Serendipity 0.7-beta1 allows remote attackers to execute arbitrary SQL commands via the entry_id parameter to (1) exit.php or (2) comment.php. | Assigned (20050710) | None (candidate not yet proposed) | View |
Page 19162 of 20943, showing 5 records out of 104715 total, starting on record 95806, ending on 95810