CVE List

Id CVE No. Status Description Phase Votes Comments Actions
47363  CVE-2010-4779  Candidate  Cross-site scripting (XSS) vulnerability in lib/includes/auth.inc.php in the WPtouch plugin 1.9.19.4 and 1.9.20 for WordPress allows remote attackers to inject arbitrary web script or HTML via the wptouch_settings parameter to include/adsense-new.php. NOTE: some of these details are obtained from third party information.  Assigned (20110407)  None (candidate not yet proposed)    View
47619  CVE-2010-5035  Candidate  Cross-site scripting (XSS) vulnerability in search.php in iScripts eSwap 2.0 allows remote attackers to inject arbitrary web script or HTML via the txtHomeSearch parameter (aka the search field). NOTE: some of these details are obtained from third party information.  Assigned (20111102)  None (candidate not yet proposed)    View
47875  CVE-2010-5291  Candidate  Amberdms Billing System (ABS) before 1.4.1 does not properly implement blacklisting after detection of invalid login attempts, which makes it easier for remote attackers to obtain access via a brute-force approach.  Assigned (20140110)  None (candidate not yet proposed)    View
48131  CVE-2011-0219  Candidate  Apple Safari before 5.0.6 allows remote attackers to bypass the Same Origin Policy, and modify the rendering of text from arbitrary web sites, via a Java applet that loads fonts.  Assigned (20101223)  None (candidate not yet proposed)    View
48387  CVE-2011-0475  Candidate  Use-after-free vulnerability in Google Chrome before 8.0.552.237 and Chrome OS before 8.0.552.344 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a PDF document.  Assigned (20110114)  None (candidate not yet proposed)    View

Page 310 of 20943, showing 5 records out of 104715 total, starting on record 1546, ending on 1550

Actions