CVE List

Id CVE No. Status Description Phase Votes Comments Actions
76795  CVE-2014-9494  Candidate  RabbitMQ before 3.4.0 allows remote attackers to bypass the loopback_users restriction via a crafted X-Forwareded-For header.  Assigned (20150103)  None (candidate not yet proposed)    View
11515  CVE-2005-0309  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in (1) index.php or (2) mod.php in Exponent 0.95 allow remote attackers to inject arbitrary web script or HTML via the module parameter.  Assigned (20050210)  None (candidate not yet proposed)    View
77051  CVE-2014-9750  Candidate  ntp_crypto.c in ntpd in NTP 4.x before 4.2.8p1, when Autokey Authentication is enabled, allows remote attackers to obtain sensitive information from process memory or cause a denial of service (daemon crash) via a packet containing an extension field with an invalid value for the length of its value field.  Assigned (20151004)  None (candidate not yet proposed)    View
11771  CVE-2005-0565  Candidate  The Announce module in phpWebSite 0.10.0 and earlier allows remote attackers to execute arbitrary PHP code by setting the Image field to reference a PHP file whose name contains a .gif.php extension.  Assigned (20050227)  None (candidate not yet proposed)    View
77307  CVE-2015-0044  Candidate  Microsoft Internet Explorer 8 and 9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-8967 and CVE-2015-0050.  Assigned (20141118)  None (candidate not yet proposed)    View

Page 20535 of 20943, showing 5 records out of 104715 total, starting on record 102671, ending on 102675

Actions