CVE List

Id CVE No. Status Description Phase Votes Comments Actions
13810  CVE-2005-2604  Candidate  index.php for My Image Gallery (Mig ) 1.4.1 allows remote attackers to obtain the web server path via certain currDir and image arguments, which leaks the path in an error message.  Assigned (20050817)  None (candidate not yet proposed)    View
79346  CVE-2015-2069  Candidate  Cross-site scripting (XSS) vulnerability in the WooCommerce plugin before 2.2.11 for WordPress allows remote attackers to inject arbitrary web script or HTML via the QUERY_STRING in the wc-reports page to wp-admin/admin.php.  Assigned (20150224)  None (candidate not yet proposed)    View
14066  CVE-2005-2860  Candidate  Cross-site scripting (XSS) vulnerability in Nikto 1.35 and earlier allows remote attackers to inject arbitrary web script or HTML via the Server field in an HTTP response header, which is directly injected into an HTML report.  Assigned (20050908)  None (candidate not yet proposed)    View
79602  CVE-2015-2325  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20150318)  None (candidate not yet proposed)    View
14322  CVE-2005-3116  Candidate  Stack-based buffer overflow in a shared library as used by the Volume Manager daemon (vmd) in VERITAS NetBackup Enterprise Server 5.0 MP1 to MP5 and 5.1 up to MP3A allows remote attackers to execute arbitrary code via a crafted packet.  Assigned (20050930)  None (candidate not yet proposed)    View

Page 19842 of 20943, showing 5 records out of 104715 total, starting on record 99206, ending on 99210

Actions