CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
76806 | CVE-2014-9505 | Candidate | Cross-site scripting (XSS) vulnerability in the School Administration module 7.x-1.x before 7.x-1.8 for Drupal allows remote authenticated users with permission to create or edit a class node to inject arbitrary web script or HTML via a node title. | Assigned (20150103) | None (candidate not yet proposed) | View | |
11526 | CVE-2005-0320 | Candidate | Multiple cross-site scripting vulnerabilities in MERAK Mail Server 7.6.0 with Icewarp Web Mail 5.3.0 allow remote attackers to inject arbitrary web script or HTML via the (1) username parameter to login.html, (2) accountid parameter to accountsettings_add.html, or the (3) note, (4) title, and (5) location fields to calendar.html. | Assigned (20050210) | None (candidate not yet proposed) | View | |
77062 | CVE-2014-9761 | Candidate | Multiple stack-based buffer overflows in the GNU C Library (aka glibc or libc6) before 2.23 allow context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long argument to the (1) nan, (2) nanf, or (3) nanl function. | Assigned (20160119) | None (candidate not yet proposed) | View | |
11782 | CVE-2005-0576 | Candidate | Unknown vulnerability in Standard Type Services Framework (STSF) Font Server Daemon (stfontserverd) in Solaris 9 allows local users to modify or delete arbitrary files. | Assigned (20050227) | None (candidate not yet proposed) | View | |
77318 | CVE-2015-0055 | Candidate | Microsoft Internet Explorer 10 and 11 allows remote attackers to gain privileges via a crafted web site, aka "Internet Explorer Elevation of Privilege Vulnerability." | Assigned (20141118) | None (candidate not yet proposed) | View |
Page 501 of 20943, showing 5 records out of 104715 total, starting on record 2501, ending on 2505