CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
10244 | CVE-2004-1817 | Candidate | Cross-site scripting (XSS) vulnerability in modules.php in Php-Nuke 7.1.0 allows remote attackers to inject arbitrary web script or HTML via the (1) Your Name field, (2) e-mail field, (3) nicname field, (4) fname parameter, (5) ratenum parameter, or (6) search field. | Assigned (20050504) | None (candidate not yet proposed) | View | |
75780 | CVE-2014-8479 | Candidate | The FTP server on Siemens SCALANCE X-300 switches with firmware before 4.0 and SCALANCE X 408 switches with firmware before 4.0 allows remote authenticated users to cause a denial of service (reboot) via crafted FTP packets. | Assigned (20141024) | None (candidate not yet proposed) | View | |
10500 | CVE-2004-2074 | Candidate | Format string vulnerability in Dream FTP 1.02 allows local users to cause a denial of service (crash) via format string specifiers in the (1) PASS or (2) RETR commands. | Assigned (20050519) | None (candidate not yet proposed) | View | |
76036 | CVE-2014-8735 | Candidate | The Bad Behavior module 6.x-2.x before 6.x-2.2216 and 7.x-2.x before 7.x-2.2216 for Drupal logs usernames and passwords, which allows remote authenticated users with the "administer bad behavior" permission to obtain sensitive information by reading a log file. | Assigned (20141112) | None (candidate not yet proposed) | View | |
10756 | CVE-2004-2330 | Candidate | ColdFusion MX 6.1 and 6.1 J2EE allows remote attackers to cause a denial of service via an HTTP request containing a large number of form fields. | Assigned (20050816) | None (candidate not yet proposed) | View |
Page 334 of 20943, showing 5 records out of 104715 total, starting on record 1666, ending on 1670