CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10244  CVE-2004-1817  Candidate  Cross-site scripting (XSS) vulnerability in modules.php in Php-Nuke 7.1.0 allows remote attackers to inject arbitrary web script or HTML via the (1) Your Name field, (2) e-mail field, (3) nicname field, (4) fname parameter, (5) ratenum parameter, or (6) search field.  Assigned (20050504)  None (candidate not yet proposed)    View
75780  CVE-2014-8479  Candidate  The FTP server on Siemens SCALANCE X-300 switches with firmware before 4.0 and SCALANCE X 408 switches with firmware before 4.0 allows remote authenticated users to cause a denial of service (reboot) via crafted FTP packets.  Assigned (20141024)  None (candidate not yet proposed)    View
10500  CVE-2004-2074  Candidate  Format string vulnerability in Dream FTP 1.02 allows local users to cause a denial of service (crash) via format string specifiers in the (1) PASS or (2) RETR commands.  Assigned (20050519)  None (candidate not yet proposed)    View
76036  CVE-2014-8735  Candidate  The Bad Behavior module 6.x-2.x before 6.x-2.2216 and 7.x-2.x before 7.x-2.2216 for Drupal logs usernames and passwords, which allows remote authenticated users with the "administer bad behavior" permission to obtain sensitive information by reading a log file.  Assigned (20141112)  None (candidate not yet proposed)    View
10756  CVE-2004-2330  Candidate  ColdFusion MX 6.1 and 6.1 J2EE allows remote attackers to cause a denial of service via an HTTP request containing a large number of form fields.  Assigned (20050816)  None (candidate not yet proposed)    View

Page 334 of 20943, showing 5 records out of 104715 total, starting on record 1666, ending on 1670

Actions