CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10751  CVE-2004-2325  Candidate  Cross-site scripting (XSS) vulnerability in EditModule.aspx for DotNetNuke (formerly IBuySpy Workshop) 1.0.6 through 1.0.10d allows remote attackers to inject arbitrary web script or HTML.  Assigned (20050816)  None (candidate not yet proposed)    View
76287  CVE-2014-8986  Candidate  Cross-site scripting (XSS) vulnerability in the selection list in the filters in the Configuration Report page (adm_config_report.php) in MantisBT 1.2.13 through 1.2.17 allows remote administrators to inject arbitrary web script or HTML via a crafted config option, a different vulnerability than CVE-2014-8987.  Assigned (20141119)  None (candidate not yet proposed)    View
11007  CVE-2004-2581  Candidate  Novell iChain 2.3 allows attackers to cause a denial of service via a URL with a "specific string."  Assigned (20051128)  None (candidate not yet proposed)    View
76543  CVE-2014-9242  Candidate  SQL injection vulnerability in admin/pages/modify.php in WebsiteBaker 2.8.3 allows remote attackers to execute arbitrary SQL commands via the page_id parameter.  Assigned (20141203)  None (candidate not yet proposed)    View
11263  CVE-2005-0057  Candidate  The Hyperlink Object Library for Windows 98, 2000, XP, and Server 2003 allows remote attackers to execute arbitrary code via a crafted link that triggers an "unchecked buffer" in the library, possibly due to a buffer overflow.  Assigned (20050111)  None (candidate not yet proposed)    View

Page 20268 of 20943, showing 5 records out of 104715 total, starting on record 101336, ending on 101340

Actions