CVE List

Id CVE No. Status Description Phase Votes Comments Actions
77816  CVE-2015-0553  Candidate  Cross-site scripting (XSS) vulnerability in admin/pages/modify.php in WebsiteBaker 2.8.3 SP3 allows remote attackers to inject arbitrary web script or HTML via the page_id parameter.  Assigned (20150105)  None (candidate not yet proposed)    View
12536  CVE-2005-1330  Candidate  AppKit in Mac OS X 10.3.9 allows attackers to cause a denial of service (Cocoa application crash) via a malformed TIFF image that causes the NXSeek to use an incorrect offset, leading to an unhandled exception.  Assigned (20050427)  None (candidate not yet proposed)    View
78072  CVE-2015-0809  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20150107)  None (candidate not yet proposed)    View
12792  CVE-2005-1586  Candidate  Quick.Forum 2.1.6 stores potentially sensitive information such as usernames, banned IP addresses, censored words, and backups under the web document root, which allows remote attackers to obtain that information via a direct request to (1) db/users.txt, (2) db/banList.txt, (3) db/censureWords.txt, or (4) backup files.  Assigned (20050514)  None (candidate not yet proposed)    View
78328  CVE-2015-1051  Candidate  Open redirect vulnerability in the Context UI module in the Context module 7.x-3.x before 7.x-3.6 for Drupal allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the destination parameter.  Assigned (20150115)  None (candidate not yet proposed)    View

Page 20320 of 20943, showing 5 records out of 104715 total, starting on record 101596, ending on 101600

Actions