CVE List

Id CVE No. Status Description Phase Votes Comments Actions
69628  CVE-2014-2333  Candidate  Cross-site scripting (XSS) vulnerability in the Lazyest Gallery plugin before 1.1.21 for WordPress allows remote attackers to inject arbitrary web script or HTML via an EXIF tag. NOTE: some of these details are obtained from third party information.  Assigned (20140312)  None (candidate not yet proposed)    View
4348  CVE-2001-1548  Candidate  ZoneAlarm 2.1 through 2.6 and ZoneAlarm Pro 2.4 and 2.6 allows local users to bypass filtering via non-standard TCP packets created with non-Windows protocol adapters.  Assigned (20050714)  None (candidate not yet proposed)    View
69884  CVE-2014-2589  Candidate  Cross-site scripting (XSS) vulnerability in the Dashboard Backend service (stats/dashboard.jsp) in SonicWall Network Security Appliance (NSA) 2400 allows remote attackers to inject arbitrary web script or HTML via the sn parameter.  Assigned (20140323)  None (candidate not yet proposed)    View
4604  CVE-2002-0212  Candidate  The login for Hosting Controller 1.1 through 1.4.1 returns different error messages when a valid or invalid user is provided, which allows remote attackers to determine the existence of valid usernames and makes it easier to conduct a brute force attack.  Proposed (20020502)  ACCEPT(1) Green | NOOP(3) Cole, Foat, Wall    View
70140  CVE-2014-2845  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20140410)  None (candidate not yet proposed)    View

Page 20631 of 20943, showing 5 records out of 104715 total, starting on record 103151, ending on 103155

Actions