CVE List

Id CVE No. Status Description Phase Votes Comments Actions
15112  CVE-2005-3908  Candidate  Cross-site scripting (XSS) vulnerability in search.php in GhostScripter Amazon Shop 5.0.0, and other versions before 5.0.2, allows remote attackers to inject web script or HTML via the query parameter.  Assigned (20051130)  None (candidate not yet proposed)    View
80648  CVE-2015-3371  Candidate  Open redirect vulnerability in the Node Invite module before 6.x-2.5 for Drupal allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via the destination parameter.  Assigned (20150421)  None (candidate not yet proposed)    View
15368  CVE-2005-4164  Candidate  SQL injection vulnerability in view.php in PHP-addressbook 1.2 allows remote attackers to execute arbitrary SQL commands via the id parameter.  Assigned (20051211)  None (candidate not yet proposed)    View
80904  CVE-2015-3627  Candidate  Libcontainer and Docker Engine before 1.6.1 opens the file-descriptor passed to the pid-1 process before performing the chroot, which allows local users to gain privileges via a symlink attack in an image.  Assigned (20150430)  None (candidate not yet proposed)    View
15624  CVE-2005-4420  Candidate  Cross-site scripting (XSS) vulnerability in Honeycomb Archive Enterprise 3.0 allows remote attackers to inject arbitrary web script or HTML via unspecified search parameters, possibly the keyword parameter in search.cfm.  Assigned (20051220)  None (candidate not yet proposed)    View

Page 674 of 20943, showing 5 records out of 104715 total, starting on record 3366, ending on 3370

Actions