CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11243  CVE-2005-0037  Candidate  The DNS implementation of DNRD before 2.10 allows remote attackers to cause a denial of service via a compressed DNS packet with a label length byte with an incorrect offset, which could trigger an infinite loop.  Assigned (20050107)  None (candidate not yet proposed)    View
76779  CVE-2014-9478  Candidate  Cross-site scripting (XSS) vulnerability in the preview in the ExpandTemplates extension for MediaWiki, when $wgRawHTML is set to true, allows remote attackers to inject arbitrary web script or HTML via the wpInput parameter to the Special:ExpandTemplates page.  Assigned (20150103)  None (candidate not yet proposed)    View
11499  CVE-2005-0293  Candidate  Directory traversal vulnerability in minis.php in Minis 0.2.1 allows remote attackers to read arbitrary files via a .. (dot dot) in the month parameter.  Assigned (20050210)  None (candidate not yet proposed)    View
77035  CVE-2014-9734  Candidate  Directory traversal vulnerability in the Slider Revolution (revslider) plugin before 4.2 for WordPress allows remote attackers to read arbitrary files via a .. (dot dot) in the img parameter in a revslider_show_image action to wp-admin/admin-ajax.php.  Assigned (20150630)  None (candidate not yet proposed)    View
11755  CVE-2005-0549  Candidate  Cross-site scripting (XSS) vulnerability in Solaris AnswerBook2 Documentation 1.4.4 and earlier allows remote attackers to inject arbitrary web script or HTML via the "View Log Files" function.  Assigned (20050225)  None (candidate not yet proposed)    View

Page 19277 of 20943, showing 5 records out of 104715 total, starting on record 96381, ending on 96385

Actions