CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12278  CVE-2005-1072  Candidate  Cross-site scripting (XSS) vulnerability in PunBB before 1.2.5 allows remote attackers to inject arbitrary web script or HTML.  Assigned (20050412)  None (candidate not yet proposed)    View
77814  CVE-2015-0551  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in EMC Documentum WebTop 6.7SP1 before P31, 6.7SP2 before P23, and 6.8 before P01; Documentum Administrator 6.7SP1 before P31, 6.7SP2 before P23, 7.0 before P18, 7.1 before P15, and 7.2 before P01; Documentum Digital Assets Manager 6.5SP6 before P25; Documentum Web Publishers 6.5 SP7 before P25; and Documentum Task Space 6.7SP1 before P31 and 6.7SP2 before P23 allow remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20141217)  None (candidate not yet proposed)    View
12534  CVE-2005-1328  Candidate  OneWorldStore allows remote attackers to cause a denial of service (application crash) via a direct request to owConnections/chksettings.asp.  Assigned (20050427)  None (candidate not yet proposed)    View
78070  CVE-2015-0807  Candidate  The navigator.sendBeacon implementation in Mozilla Firefox before 37.0, Firefox ESR 31.x before 31.6, and Thunderbird before 31.6 processes HTTP 30x status codes for redirects after a preflight request has occurred, which allows remote attackers to bypass intended CORS access-control checks and conduct cross-site request forgery (CSRF) attacks via a crafted web site, a similar issue to CVE-2014-8638.  Assigned (20150107)  None (candidate not yet proposed)    View
12790  CVE-2005-1584  Candidate  Cross-site scripting (XSS) vulnerability in index.php for Quick.Forum 2.1.6 allows remote attackers to inject arbitrary web script or HTML via the topic field in a NewTopic action.  Assigned (20050514)  None (candidate not yet proposed)    View

Page 20165 of 20943, showing 5 records out of 104715 total, starting on record 100821, ending on 100825

Actions