CVE List

Id CVE No. Status Description Phase Votes Comments Actions
76780  CVE-2014-9479  Candidate  Cross-site scripting (XSS) vulnerability in the preview in the TemplateSandbox extension for MediaWiki allows remote attackers to inject arbitrary web script or HTML via the text parameter to Special:TemplateSandbox.  Assigned (20150103)  None (candidate not yet proposed)    View
11500  CVE-2005-0294  Candidate  minis.php in Minis 0.2.1 allows remote attackers to cause a denial of service (infinite loop) via an HTTP request for a file that the web server does not have permission to read, as demonstrated using the month parameter.  Assigned (20050210)  None (candidate not yet proposed)    View
77036  CVE-2014-9735  Candidate  The ThemePunch Slider Revolution (revslider) plugin before 3.0.96 for WordPress and Showbiz Pro plugin 1.7.1 and earlier for Wordpress does not properly restrict access to administrator AJAX functionality, which allows remote attackers to (1) upload and execute arbitrary files via an update_plugin action; (2) delete arbitrary sliders via a delete_slider action; and (3) create, (4) update, (5) import, or (6) export arbitrary sliders via unspecified vectors.  Assigned (20150630)  None (candidate not yet proposed)    View
11756  CVE-2005-0550  Candidate  Buffer overflow in Microsoft Windows 2000, Windows XP SP1 and SP2, and Windows Server 2003 allows local users to cause a denial of service (i.e., system crash) via a malformed request, aka "Object Management Vulnerability".  Assigned (20050226)  None (candidate not yet proposed)    View
77292  CVE-2015-0029  Candidate  Microsoft Internet Explorer 6 and 8 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."  Assigned (20141118)  None (candidate not yet proposed)    View

Page 19368 of 20943, showing 5 records out of 104715 total, starting on record 96836, ending on 96840

Actions