CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
15083 | CVE-2005-3879 | Candidate | Multiple SQL injection vulnerabilities in Softbiz Resource Repository Script 1.1 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) sbres_id parameter in (a) details_res.php, (b) refer_friend.php, and (c) report_link.php, and (2) the sbcat_id parameter in (d) showcats.php. | Assigned (20051129) | None (candidate not yet proposed) | View | |
80619 | CVE-2015-3342 | Candidate | Open redirect vulnerability in the Ubercart Currency Conversion module before 6.x-1.2 for Drupal allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the destination query parameter. | Assigned (20150421) | None (candidate not yet proposed) | View | |
15339 | CVE-2005-4135 | Candidate | Direct static code injection vulnerability in includes/newtopic.php in SimpleBBS 1.1 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the Host header (possibly the name parameter or variable), which is then written to data/topics.php. | Assigned (20051209) | None (candidate not yet proposed) | View | |
80875 | CVE-2015-3598 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20150430) | None (candidate not yet proposed) | View | |
15595 | CVE-2005-4391 | Candidate | Cross-site scripting (XSS) vulnerability in damoon allows remote attackers to inject arbitrary web script or HTML via unspecified search parameters, possibly the q parameter. | Assigned (20051220) | None (candidate not yet proposed) | View |
Page 19283 of 20943, showing 5 records out of 104715 total, starting on record 96411, ending on 96415