CVE List

Id CVE No. Status Description Phase Votes Comments Actions
70156  CVE-2014-2861  Candidate  Incomplete blacklist vulnerability in PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allows remote attackers to conduct cross-site scripting (XSS) attacks via a crafted string, as demonstrated by bypassing a protection mechanism that removes only the "alert" string.  Assigned (20140415)  None (candidate not yet proposed)    View
70412  CVE-2014-3117  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20140429)  None (candidate not yet proposed)    View
70668  CVE-2014-3372  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in the CCM reports interface in the Server in Cisco Unified Communications Manager allow remote attackers to inject arbitrary web script or HTML via unspecified parameters, aka Bug ID CSCuq90589.  Assigned (20140507)  None (candidate not yet proposed)    View
70924  CVE-2014-3628  Candidate  Cross-site scripting (XSS) vulnerability in the Admin UI Plugin / Stats page in Apache Solr 4.x before 4.10.3 allows remote attackers to inject arbitrary web script or HTML via the fieldvaluecache object.  Assigned (20140514)  None (candidate not yet proposed)    View
71180  CVE-2014-3884  Candidate  Cross-site scripting (XSS) vulnerability in Usermin before 1.600 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. NOTE: this might overlap CVE-2014-3924.  Assigned (20140527)  None (candidate not yet proposed)    View

Page 967 of 20943, showing 5 records out of 104715 total, starting on record 4831, ending on 4835

Actions