CVE List

Id CVE No. Status Description Phase Votes Comments Actions
76806  CVE-2014-9505  Candidate  Cross-site scripting (XSS) vulnerability in the School Administration module 7.x-1.x before 7.x-1.8 for Drupal allows remote authenticated users with permission to create or edit a class node to inject arbitrary web script or HTML via a node title.  Assigned (20150103)  None (candidate not yet proposed)    View
11526  CVE-2005-0320  Candidate  Multiple cross-site scripting vulnerabilities in MERAK Mail Server 7.6.0 with Icewarp Web Mail 5.3.0 allow remote attackers to inject arbitrary web script or HTML via the (1) username parameter to login.html, (2) accountid parameter to accountsettings_add.html, or the (3) note, (4) title, and (5) location fields to calendar.html.  Assigned (20050210)  None (candidate not yet proposed)    View
77062  CVE-2014-9761  Candidate  Multiple stack-based buffer overflows in the GNU C Library (aka glibc or libc6) before 2.23 allow context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long argument to the (1) nan, (2) nanf, or (3) nanl function.  Assigned (20160119)  None (candidate not yet proposed)    View
11782  CVE-2005-0576  Candidate  Unknown vulnerability in Standard Type Services Framework (STSF) Font Server Daemon (stfontserverd) in Solaris 9 allows local users to modify or delete arbitrary files.  Assigned (20050227)  None (candidate not yet proposed)    View
77318  CVE-2015-0055  Candidate  Microsoft Internet Explorer 10 and 11 allows remote attackers to gain privileges via a crafted web site, aka "Internet Explorer Elevation of Privilege Vulnerability."  Assigned (20141118)  None (candidate not yet proposed)    View

Page 501 of 20943, showing 5 records out of 104715 total, starting on record 2501, ending on 2505

Actions