CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12918  CVE-2005-1712  Candidate  Unknown vulnerability in Serendipity 0.8, when used with multiple authors, allows unprivileged authors to upload arbitrary media files.  Assigned (20050524)  None (candidate not yet proposed)    View
12919  CVE-2005-1713  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in Serendipity 0.8 allow remote attackers to inject arbitrary web script or HTML via the (1) templatedropdown and (2) shoutbox plugins.  Assigned (20050524)  None (candidate not yet proposed)    View
12920  CVE-2005-1714  Candidate  Cross-site scripting (XSS) vulnerability in NetWin SurgeMail 3.0c2 allows remote attackers to inject arbitrary web script or HTML via unknown vectors.  Assigned (20050524)  None (candidate not yet proposed)    View
12921  CVE-2005-1715  Candidate  Cross-site scripting (XSS) vulnerability in index.php for TOPo 2.2 (2.2.178) allows remote attackers to inject arbitrary web script or HTML via the (1) m, (2) s, (3) ID, or (4) t parameters, or the (5) field name, (6) Your Web field, or (7) email field in the comments section.  Assigned (20050524)  None (candidate not yet proposed)    View
12922  CVE-2005-1716  Candidate  TOPo 2.2 (2.2.178) stores data files in the data directory under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information such as client IP addresses.  Assigned (20050524)  None (candidate not yet proposed)    View

Page 19341 of 20943, showing 5 records out of 104715 total, starting on record 96701, ending on 96705

Actions