CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4321  CVE-2001-1521  Candidate  Cross-site scripting (XSS) vulnerability in user.php in PostNuke 0.64 allows remote attackers to inject arbitrary web script or HTML via the uname parameter.  Assigned (20050714)  None (candidate not yet proposed)    View
4322  CVE-2001-1522  Candidate  Cross-site scripting (XSS) vulnerability in im.php in IMessenger for PHP-Nuke allows remote attackers to inject arbitrary web script or HTML via a message.  Assigned (20050714)  None (candidate not yet proposed)    View
4323  CVE-2001-1523  Candidate  Cross-site scripting (XSS) vulnerability in the DMOZGateway module for PHP-Nuke allows remote attackers to inject arbitrary web script or HTML via the topic parameter.  Assigned (20050714)  None (candidate not yet proposed)    View
4324  CVE-2001-1524  Candidate  Cross-site scripting (XSS) vulnerability in PHP-Nuke 5.3.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) uname parameter in user.php, (2) ttitle, letter and file parameters in modules.php, (3) subject, story and storyext parameters in submit.php, (4) upload parameter in admin.php and (5) fname parameter in friend.php.  Assigned (20050714)  None (candidate not yet proposed)    View
4325  CVE-2001-1525  Candidate  Directory traversal vulnerability in the comments action in easyNews 1.5 and earlier allows remote attackers to modify news.dat, template.dat and possibly other files via a ".." in the cid parameter.  Assigned (20050714)  None (candidate not yet proposed)    View

Page 865 of 20943, showing 5 records out of 104715 total, starting on record 4321, ending on 4325

Actions