CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
11243 | CVE-2005-0037 | Candidate | The DNS implementation of DNRD before 2.10 allows remote attackers to cause a denial of service via a compressed DNS packet with a label length byte with an incorrect offset, which could trigger an infinite loop. | Assigned (20050107) | None (candidate not yet proposed) | View | |
76779 | CVE-2014-9478 | Candidate | Cross-site scripting (XSS) vulnerability in the preview in the ExpandTemplates extension for MediaWiki, when $wgRawHTML is set to true, allows remote attackers to inject arbitrary web script or HTML via the wpInput parameter to the Special:ExpandTemplates page. | Assigned (20150103) | None (candidate not yet proposed) | View | |
11499 | CVE-2005-0293 | Candidate | Directory traversal vulnerability in minis.php in Minis 0.2.1 allows remote attackers to read arbitrary files via a .. (dot dot) in the month parameter. | Assigned (20050210) | None (candidate not yet proposed) | View | |
77035 | CVE-2014-9734 | Candidate | Directory traversal vulnerability in the Slider Revolution (revslider) plugin before 4.2 for WordPress allows remote attackers to read arbitrary files via a .. (dot dot) in the img parameter in a revslider_show_image action to wp-admin/admin-ajax.php. | Assigned (20150630) | None (candidate not yet proposed) | View | |
11755 | CVE-2005-0549 | Candidate | Cross-site scripting (XSS) vulnerability in Solaris AnswerBook2 Documentation 1.4.4 and earlier allows remote attackers to inject arbitrary web script or HTML via the "View Log Files" function. | Assigned (20050225) | None (candidate not yet proposed) | View |
Page 19277 of 20943, showing 5 records out of 104715 total, starting on record 96381, ending on 96385