CVE List

Id CVE No. Status Description Phase Votes Comments Actions
76801  CVE-2014-9500  Candidate  Cross-site scripting (XSS) vulnerability in the Moip module 7.x-1.x before 7.x-1.4 for Drupal allows remote attackers to inject arbitrary web script or HTML via unspecified vectors to the notification page callback.  Assigned (20150103)  None (candidate not yet proposed)    View
11521  CVE-2005-0315  Candidate  The FTP service in Magic Winmail Server 4.0 Build 1112 does not verify that the IP address in a PORT command is the same as the IP address of the user of the FTP session, which allows remote authenticated users to use the server as an intermediary for port scanning.  Assigned (20050210)  None (candidate not yet proposed)    View
77057  CVE-2014-9756  Candidate  The psf_fwrite function in file_io.c in libsndfile allows attackers to cause a denial of service (divide-by-zero error and application crash) via unspecified vectors related to the headindex variable.  Assigned (20151103)  None (candidate not yet proposed)    View
11777  CVE-2005-0571  Candidate  admin_loader.php in PunBB 1.2.1 allows remote attackers to read arbitrary files via the plugin parameter.  Assigned (20050227)  None (candidate not yet proposed)    View
77313  CVE-2015-0050  Candidate  Microsoft Internet Explorer 8 and 9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-8967 and CVE-2015-0044.  Assigned (20141118)  None (candidate not yet proposed)    View

Page 96 of 20943, showing 5 records out of 104715 total, starting on record 476, ending on 480

Actions