CVE List

Id CVE No. Status Description Phase Votes Comments Actions
69362  CVE-2014-2067  Candidate  Cross-site scripting (XSS) vulnerability in java/hudson/model/Cause.java in Jenkins before 1.551 and LTS before 1.532.2 allows remote authenticated users to inject arbitrary web script or HTML via a "remote cause note."  Assigned (20140219)  None (candidate not yet proposed)    View
69618  CVE-2014-2323  Candidate  SQL injection vulnerability in mod_mysql_vhost.c in lighttpd before 1.4.35 allows remote attackers to execute arbitrary SQL commands via the host name, related to request_check_hostname.  Assigned (20140312)  None (candidate not yet proposed)    View
4338  CVE-2001-1538  Candidate  SpeedXess HA-120 DSL router has a default administrative password of "speedxess", which allows remote attackers to gain access.  Assigned (20050714)  None (candidate not yet proposed)    View
69874  CVE-2014-2579  Candidate  Multiple cross-site request forgery (CSRF) vulnerabilities in XCloner Standalone 3.5 and earlier allow remote attackers to hijack the authentication of administrators for requests that (1) change the administrator password via the config task to index2.php or (2) when the enable_db_backup and sql_mem options are enabled, access the database backup functionality via the dbbackup_comp parameter in the generate action to index2.php. NOTE: vector 2 might be a duplicate of CVE-2014-2340, which is for the XCloner Wordpress plugin. NOTE: remote attackers can leverage CVE-2014-2996 with vector 2 to execute arbitrary commands.  Assigned (20140321)  None (candidate not yet proposed)    View
4594  CVE-2002-0202  Candidate  PaintBBS 1.2 installs certain files and directories with insecure permissions, which allows local users to (1) obtain the encrypted server password via the world-readable oekakibbs.conf file, or (2) modify the server configuration via the world-writeable /oekaki/ folder.  Proposed (20020502)  ACCEPT(1) Green | NOOP(3) Cole, Foat, Wall    View

Page 19827 of 20943, showing 5 records out of 104715 total, starting on record 99131, ending on 99135

Actions