CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10752  CVE-2004-2326  Candidate  SQL injection vulnerability in IP3 Networks NetAccess Appliance before firmware 3.1.18b13 allows remote attackers to bypass authentication via the (1) login or (2) password. NOTE: this issue was later reported to also affect firmware 4.0.34.  Assigned (20050816)  None (candidate not yet proposed)    View
76288  CVE-2014-8987  Candidate  Cross-site scripting (XSS) vulnerability in the "set configuration" box in the Configuration Report page (adm_config_report.php) in MantisBT 1.2.13 through 1.2.17 allows remote administrators to inject arbitrary web script or HTML via the config_option parameter, a different vulnerability than CVE-2014-8986.  Assigned (20141119)  None (candidate not yet proposed)    View
11008  CVE-2004-2582  Candidate  Novell iChain 2.3 includes the build number in the VIA line of the proxy server"s HTTP headers, which allows remote attackers to obtain sensitive information.  Assigned (20051128)  None (candidate not yet proposed)    View
76544  CVE-2014-9243  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in WebsiteBaker 2.8.3 allow remote attackers to inject arbitrary web script or HTML via the (1) QUERY_STRING to wb/admin/admintools/tool.php or (2) section_id parameter to edit_module_files.php, (3) news/add_post.php, (4) news/modify_group.php, (5) news/modify_post.php, or (6) news/modify_settings.php in wb/modules/.  Assigned (20141203)  None (candidate not yet proposed)    View
11264  CVE-2005-0058  Candidate  Buffer overflow in the Telephony Application Programming Interface (TAPI) for Microsoft Windows 98, Windows 98 SE, Windows ME, Windows 2000, Windows XP, and Windows Server 2003 allows attackers elevate privileges or execute arbitrary code via a crafted message.  Assigned (20050111)  None (candidate not yet proposed)    View

Page 626 of 20943, showing 5 records out of 104715 total, starting on record 3126, ending on 3130

Actions