CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
10988 | CVE-2004-2562 | Candidate | SQL injection vulnerability in jobedit.asp in Leigh Business Enterprises (LBE) Web Helpdesk before 4.0.0.81 allows remote attackers to execute arbitrary SQL commands via the id parameter. | Assigned (20051122) | None (candidate not yet proposed) | View | |
76524 | CVE-2014-9223 | Candidate | Multiple buffer overflows in AllegroSoft RomPager, as used in Huawei Home Gateway products and other vendors and products, allow remote attackers to cause a denial of service or possibly execute arbitrary code via unspecified vectors related to authorization. | Assigned (20141202) | None (candidate not yet proposed) | View | |
11244 | CVE-2005-0038 | Candidate | The DNS implementation of PowerDNS 2.9.16 and earlier allows remote attackers to cause a denial of service via a compressed DNS packet with a label length byte with an incorrect offset, which could trigger an infinite loop. | Assigned (20050107) | None (candidate not yet proposed) | View | |
76780 | CVE-2014-9479 | Candidate | Cross-site scripting (XSS) vulnerability in the preview in the TemplateSandbox extension for MediaWiki allows remote attackers to inject arbitrary web script or HTML via the text parameter to Special:TemplateSandbox. | Assigned (20150103) | None (candidate not yet proposed) | View | |
11500 | CVE-2005-0294 | Candidate | minis.php in Minis 0.2.1 allows remote attackers to cause a denial of service (infinite loop) via an HTTP request for a file that the web server does not have permission to read, as demonstrated using the month parameter. | Assigned (20050210) | None (candidate not yet proposed) | View |
Page 19378 of 20943, showing 5 records out of 104715 total, starting on record 96886, ending on 96890