CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
12786 | CVE-2005-1580 | Candidate | users.ini.php in BoastMachine 3.0 does not properly restrict the types of files that can be uploaded, which allows remote attackers to execute arbitrary code. | Assigned (20050514) | None (candidate not yet proposed) | View | |
78322 | CVE-2015-1045 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20150112) | None (candidate not yet proposed) | View | |
13042 | CVE-2005-1836 | Candidate | NEXTWEB (i)Site allows remote attackers to cause a denial of service (error 500) via a crafted HTTP request, possibly involving wildcard requests for .jsp files. | Assigned (20050602) | None (candidate not yet proposed) | View | |
78578 | CVE-2015-1301 | Candidate | Multiple unspecified vulnerabilities in Google Chrome before 45.0.2454.85 allow attackers to cause a denial of service or possibly have other impact via unknown vectors. | Assigned (20150121) | None (candidate not yet proposed) | View | |
13298 | CVE-2005-2092 | Candidate | BEA Systems WebLogic 8.1 SP1 allows remote attackers to poison the web cache, bypass web application firewall protection, and conduct XSS attacks via an HTTP request with both a "Transfer-Encoding: chunked" header and a Content-Length header, which causes WebLogic to incorrectly handle and forward the body of the request in a way that causes the receiving server to process it as a separate HTTP request, aka "HTTP Request Smuggling." | Assigned (20050630) | None (candidate not yet proposed) | View |
Page 19237 of 20943, showing 5 records out of 104715 total, starting on record 96181, ending on 96185