CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11880  CVE-2005-0674  Candidate  Cross-site scripting (XSS) vulnerability in the News module for paBox 1.6 allows remote attackers to inject arbitrary web script or HTML via the text hidden parameter in an HTTP POST request.  Assigned (20050307)  None (candidate not yet proposed)    View
11881  CVE-2005-0675  Candidate  Cross-site scripting (XSS) vulnerability in index.php for Zorum 3.5 allows remote attackers to inject arbitrary web script or HTML via the (1) list or (2) frommethod parameters.  Assigned (20050307)  None (candidate not yet proposed)    View
11882  CVE-2005-0676  Candidate  index.php in Zorum 3.5 allows remote attackers to trigger an SQL error, and possibly inject arbitrary SQL commands, via the search capability.  Assigned (20050307)  None (candidate not yet proposed)    View
11883  CVE-2005-0677  Candidate  index.php for Zorum 3.5 allows remote attackers to perform certain actions as other users by modifying the id parameter.  Assigned (20050307)  None (candidate not yet proposed)    View
11884  CVE-2005-0678  Candidate  PHP remote file inclusion vulnerability in formmail.inc.php for Form Mail Script 2.3 and earlier allows remote attackers to execute arbitrary PHP code by modifying the script_root to reference a URL on a remote web server that contains the code.  Assigned (20050307)  None (candidate not yet proposed)    View

Page 19676 of 20943, showing 5 records out of 104715 total, starting on record 98376, ending on 98380

Actions