CVE List

Id CVE No. Status Description Phase Votes Comments Actions
78839  CVE-2015-1562  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in Saurus CMS 4.7.0 allow remote attackers to inject arbitrary web script or HTML via the (1) search parameter to admin/user_management.php, (2) data_search parameter to /admin/profile_data.php, or (3) filter parameter to error_log.php.  Assigned (20150208)  None (candidate not yet proposed)    View
13559  CVE-2005-2353  Candidate  run-mozilla.sh in Thunderbird, with debugging enabled, allows local users to create or overwrite arbitrary files via a symlink attack on temporary files.  Assigned (20050722)  None (candidate not yet proposed)    View
79095  CVE-2015-1818  Candidate  XML external entity (XXE) vulnerability in the dashbuilder import facility (DocumentBuilders in org.jboss.dashboard.export.ImportManagerImpl) in Red Hat JBoss BPM Suite before 6.1.2 allows remote attackers to read arbitrary files, conduct server-side request forgery (SSRF) attacks, and have other unspecified impact via a crafted XML document.  Assigned (20150217)  None (candidate not yet proposed)    View
13815  CVE-2005-2609  Candidate  index.php in VegaDNS 0.8.1, 0.9.8, and possibly other versions, allows remote attackers to obtain the full server path via an invalid VDNS_Sessid parameter.  Assigned (20050817)  None (candidate not yet proposed)    View
79351  CVE-2015-2074  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20150224)  None (candidate not yet proposed)    View

Page 20241 of 20943, showing 5 records out of 104715 total, starting on record 101201, ending on 101205

Actions