CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
10236 | CVE-2004-1809 | Candidate | Cross-site scripting (XSS) vulnerability in phpBB 2.0.6d and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) postdays parameter to viewtopic.php or (2) topicdays parameter to viewforum.php. | Assigned (20050504) | None (candidate not yet proposed) | View | |
75772 | CVE-2014-8471 | Candidate | CA Cloud Service Management (CSM) before Summer 2014 allows remote attackers to conduct replay attacks via unspecified vectors. | Assigned (20141024) | None (candidate not yet proposed) | View | |
10492 | CVE-2004-2066 | Candidate | SQL injection vulnerability in session.php in LinPHA 0.9.4 allows remote attackers to execute arbitrary SQL code and bypass authentication via the (1) linpha_userid or (2) linpha_password cookies. | Assigned (20050504) | None (candidate not yet proposed) | View | |
76028 | CVE-2014-8727 | Candidate | Multiple directory traversal vulnerabilities in F5 BIG-IP before 10.2.2 allow local users with the "Resource Administrator" or "Administrator" role to enumerate and delete arbitrary files via a .. (dot dot) in the name parameter to (1) tmui/Control/jspmap/tmui/system/archive/properties.jsp or (2) tmui/Control/form. | Assigned (20141110) | None (candidate not yet proposed) | View | |
10748 | CVE-2004-2322 | Candidate | SQL injection vulnerability in the (1) announce and (2) notes modules of phpWebSite before 0.9.3-2 allows remote attackers to execute arbitrary SQL queries, as demonstrated using the ANN_id parameter to the announce module. | Assigned (20050816) | None (candidate not yet proposed) | View |
Page 20610 of 20943, showing 5 records out of 104715 total, starting on record 103046, ending on 103050