CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10988  CVE-2004-2562  Candidate  SQL injection vulnerability in jobedit.asp in Leigh Business Enterprises (LBE) Web Helpdesk before 4.0.0.81 allows remote attackers to execute arbitrary SQL commands via the id parameter.  Assigned (20051122)  None (candidate not yet proposed)    View
76524  CVE-2014-9223  Candidate  Multiple buffer overflows in AllegroSoft RomPager, as used in Huawei Home Gateway products and other vendors and products, allow remote attackers to cause a denial of service or possibly execute arbitrary code via unspecified vectors related to authorization.  Assigned (20141202)  None (candidate not yet proposed)    View
11244  CVE-2005-0038  Candidate  The DNS implementation of PowerDNS 2.9.16 and earlier allows remote attackers to cause a denial of service via a compressed DNS packet with a label length byte with an incorrect offset, which could trigger an infinite loop.  Assigned (20050107)  None (candidate not yet proposed)    View
76780  CVE-2014-9479  Candidate  Cross-site scripting (XSS) vulnerability in the preview in the TemplateSandbox extension for MediaWiki allows remote attackers to inject arbitrary web script or HTML via the text parameter to Special:TemplateSandbox.  Assigned (20150103)  None (candidate not yet proposed)    View
11500  CVE-2005-0294  Candidate  minis.php in Minis 0.2.1 allows remote attackers to cause a denial of service (infinite loop) via an HTTP request for a file that the web server does not have permission to read, as demonstrated using the month parameter.  Assigned (20050210)  None (candidate not yet proposed)    View

Page 19378 of 20943, showing 5 records out of 104715 total, starting on record 96886, ending on 96890

Actions