CVE List

Id CVE No. Status Description Phase Votes Comments Actions
15098  CVE-2005-3894  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in index.pl in Open Ticket Request System (OTRS) 1.0.0 through 1.3.2 and 2.0.0 through 2.0.3 allow remote authenticated users to inject arbitrary web script or HTML via (1) hex-encoded values in the QueueID parameter and (2) Action parameters.  Assigned (20051129)  None (candidate not yet proposed)    View
80634  CVE-2015-3357  Candidate  Cross-site scripting (XSS) vulnerability in the Wishlist module before 6.x-2.7 and 7.x-2.x before 7.x-2.7 for Drupal allows remote authenticated users with the "access wishlists" permission to inject arbitrary web script or HTML via unspecified vectors, which are not properly handled in a log message.  Assigned (20150421)  None (candidate not yet proposed)    View
15354  CVE-2005-4150  Candidate  Cross-site scripting (XSS) vulnerability in the portal login page in Computer Associates CleverPath 4.7 allows remote attackers to execute Javascript via unknown vectors.  Assigned (20051210)  None (candidate not yet proposed)    View
80890  CVE-2015-3613  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20150430)  None (candidate not yet proposed)    View
15610  CVE-2005-4406  Candidate  SQL injection vulnerability in index.cfm in Mercury CMS 4.0 and earlier allows remote attackers to execute arbitrary SQL commands via the page parameter.  Assigned (20051220)  None (candidate not yet proposed)    View

Page 20487 of 20943, showing 5 records out of 104715 total, starting on record 102431, ending on 102435

Actions