CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12788  CVE-2005-1582  Candidate  Cross-site scripting (XSS) vulnerability in index.php for 1Two News 1.0 allows remote attackers to inject arbitrary web script or HTML via the (1) nom, (2) email, (3) siteweb, or (4) commentaire variables.  Assigned (20050514)  None (candidate not yet proposed)    View
78324  CVE-2015-1047  Candidate  vpxd in VMware vCenter Server 5.0 before u3e, 5.1 before u3, and 5.5 before u2 allows remote attackers to cause a denial of service via a long heartbeat message.  Assigned (20150112)  None (candidate not yet proposed)    View
13044  CVE-2005-1838  Candidate  Multiple cross-site scripting vulnerabilities in castnewPost.asp in Liberum Help Desk 0.97.3 allow remote attackers to inject arbitrary web script or HTML via the (1) Email, (2) Title, or (3) Description fields.  Assigned (20050602)  None (candidate not yet proposed)    View
78580  CVE-2015-1303  Candidate  bindings/core/v8/V8DOMWrapper.h in Blink, as used in Google Chrome before 45.0.2454.101, does not perform a rethrow action to propagate information about a cross-context exception, which allows remote attackers to bypass the Same Origin Policy via a crafted HTML document containing an IFRAME element.  Assigned (20150121)  None (candidate not yet proposed)    View
13300  CVE-2005-2094  Candidate  Sun SunONE web server 6.1 SP1 allows remote attackers to poison the web cache, bypass web application firewall protection, and conduct XSS attacks via an HTTP request with both a "Transfer-Encoding: chunked" header and a Content-Length header, which causes SunONE to incorrectly handle and forward the body of the request in a way that causes the receiving server to process it as a separate HTTP request, aka "HTTP Request Smuggling."  Assigned (20050630)  None (candidate not yet proposed)    View

Page 19396 of 20943, showing 5 records out of 104715 total, starting on record 96976, ending on 96980

Actions