CVE List

Id CVE No. Status Description Phase Votes Comments Actions
15875  CVE-2005-4671  Candidate  Cross-site scripting (XSS) vulnerability in simple-upload-53.php in CityPost Simple PHP Upload 5.3 allows remote attackers to inject arbitrary web script or HTML via the message parameter.  Assigned (20060127)  None (candidate not yet proposed)    View
81411  CVE-2015-4134  Candidate  Open redirect vulnerability in goto.php in phpwind 8.7 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the url parameter.  Assigned (20150528)  None (candidate not yet proposed)    View
16131  CVE-2006-0027  Candidate  Unspecified vulnerability in Microsoft Exchange allows remote attackers to execute arbitrary code via e-mail messages with crafted (1) vCal or (2) iCal Calendar properties.  Assigned (20051130)  None (candidate not yet proposed)    View
81667  CVE-2015-4390  Candidate  Multiple cross-site request forgery (CSRF) vulnerabilities in the User Import module 6.x-4.x before 6.x-4.4 and 7.x-2.x before 7.x-2.3 for Drupal allow remote attackers to hijack the authentication of administrators for requests that (1) continue or (2) delete an ongoing import via unspecified vectors.  Assigned (20150605)  None (candidate not yet proposed)    View
16387  CVE-2006-0283  Candidate  Unspecified vulnerability in Oracle Database Server 10.1.0.4.2, Application Server 10.1.2.0.2, and Collaboration Suite Release 2, version 9.0.4.2 (Oracle9i) has unspecified impact and attack vectors, as identified by Oracle Vuln# DBC02 in the Reorganize Objects & Convert Tablespace component.  Assigned (20060118)  None (candidate not yet proposed)    View

Page 267 of 20943, showing 5 records out of 104715 total, starting on record 1331, ending on 1335

Actions