CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10582  CVE-2004-2156  Candidate  Multiple unknown vulnerabilities in Online Recruitment Agency 1.0 have unknown impact and attack vectors.  Assigned (20050710)  None (candidate not yet proposed)    View
13398  CVE-2005-2192  Candidate  SimplePHPBlog 0.4.0 stores password hashes in config/password.txt with insufficient access control, which allows remote attackers to obtain passwords via a brute force attack.  Assigned (20050710)  None (candidate not yet proposed)    View
10583  CVE-2004-2157  Candidate  Cross-site scripting (XSS) vulnerability in Comment.php in Serendipity 0.7 beta1, and possibly other versions before 0.7-beta3, allows remote attackers to inject arbitrary HTML and PHP code via the (1) email or (2) username field.  Assigned (20050710)  None (candidate not yet proposed)    View
13399  CVE-2005-2193  Candidate  SQL injection vulnerability in the user profile edit module in profile.php for PunBB 1.2.5 and earlier allows remote attackers to execute arbitrary SQL statements via the temp array, which is not initialized before it is used and prevents the attacker-supplied portions of the array from being properly escaped.  Assigned (20050710)  None (candidate not yet proposed)    View
10584  CVE-2004-2158  Candidate  SQL injection vulnerability in Serendipity 0.7-beta1 allows remote attackers to execute arbitrary SQL commands via the entry_id parameter to (1) exit.php or (2) comment.php.  Assigned (20050710)  None (candidate not yet proposed)    View

Page 19162 of 20943, showing 5 records out of 104715 total, starting on record 95806, ending on 95810

Actions