CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
15112 | CVE-2005-3908 | Candidate | Cross-site scripting (XSS) vulnerability in search.php in GhostScripter Amazon Shop 5.0.0, and other versions before 5.0.2, allows remote attackers to inject web script or HTML via the query parameter. | Assigned (20051130) | None (candidate not yet proposed) | View | |
80648 | CVE-2015-3371 | Candidate | Open redirect vulnerability in the Node Invite module before 6.x-2.5 for Drupal allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via the destination parameter. | Assigned (20150421) | None (candidate not yet proposed) | View | |
15368 | CVE-2005-4164 | Candidate | SQL injection vulnerability in view.php in PHP-addressbook 1.2 allows remote attackers to execute arbitrary SQL commands via the id parameter. | Assigned (20051211) | None (candidate not yet proposed) | View | |
80904 | CVE-2015-3627 | Candidate | Libcontainer and Docker Engine before 1.6.1 opens the file-descriptor passed to the pid-1 process before performing the chroot, which allows local users to gain privileges via a symlink attack in an image. | Assigned (20150430) | None (candidate not yet proposed) | View | |
15624 | CVE-2005-4420 | Candidate | Cross-site scripting (XSS) vulnerability in Honeycomb Archive Enterprise 3.0 allows remote attackers to inject arbitrary web script or HTML via unspecified search parameters, possibly the keyword parameter in search.cfm. | Assigned (20051220) | None (candidate not yet proposed) | View |
Page 674 of 20943, showing 5 records out of 104715 total, starting on record 3366, ending on 3370