CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
77816 | CVE-2015-0553 | Candidate | Cross-site scripting (XSS) vulnerability in admin/pages/modify.php in WebsiteBaker 2.8.3 SP3 allows remote attackers to inject arbitrary web script or HTML via the page_id parameter. | Assigned (20150105) | None (candidate not yet proposed) | View | |
12536 | CVE-2005-1330 | Candidate | AppKit in Mac OS X 10.3.9 allows attackers to cause a denial of service (Cocoa application crash) via a malformed TIFF image that causes the NXSeek to use an incorrect offset, leading to an unhandled exception. | Assigned (20050427) | None (candidate not yet proposed) | View | |
78072 | CVE-2015-0809 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20150107) | None (candidate not yet proposed) | View | |
12792 | CVE-2005-1586 | Candidate | Quick.Forum 2.1.6 stores potentially sensitive information such as usernames, banned IP addresses, censored words, and backups under the web document root, which allows remote attackers to obtain that information via a direct request to (1) db/users.txt, (2) db/banList.txt, (3) db/censureWords.txt, or (4) backup files. | Assigned (20050514) | None (candidate not yet proposed) | View | |
78328 | CVE-2015-1051 | Candidate | Open redirect vulnerability in the Context UI module in the Context module 7.x-3.x before 7.x-3.6 for Drupal allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the destination parameter. | Assigned (20150115) | None (candidate not yet proposed) | View |
Page 20320 of 20943, showing 5 records out of 104715 total, starting on record 101596, ending on 101600