CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
10252 | CVE-2004-1825 | Candidate | Cross-site scripting (XSS) vulnerability in index.php in Mambo Open Source 4.5 stable 1.0.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) return or (2) mos_change_template parameters. | Assigned (20050504) | None (candidate not yet proposed) | View | |
75788 | CVE-2014-8487 | Candidate | Kony Management (aka Enterprise Mobile Management or EMM) 1.2 and earlier allows remote authenticated users to read (1) arbitrary messages via the messageId parameter to selfservice/managedevice/getMessageBody or (2) requests via the requestId parameter to selfservice/devicemgmt/getDeviceInfoTab.htm. | Assigned (20141026) | None (candidate not yet proposed) | View | |
10508 | CVE-2004-2082 | Candidate | The samiftp.dll library in Sami FTP Server 1.1.3 allows remote authenticated users to cause a denial of service (pmsystem.exe crash) via a GET request wit a large number of leading "/" (slash) characters. | Assigned (20050519) | None (candidate not yet proposed) | View | |
76044 | CVE-2014-8743 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in the Maestro module 7.x-1.x before 7.x-1.4 for Drupal allow remote authenticated users with certain permissions to inject arbitrary web script or HTML via a (1) Role or (2) Organic Group name. | Assigned (20141013) | None (candidate not yet proposed) | View | |
10764 | CVE-2004-2338 | Candidate | OpenBSD 3.3 and 3.4 does not properly parse Accept and Deny rules without netmasks on big-endian 64-bit platforms such as SPARC64, which may allow remote attackers to bypass access restrictions. | Assigned (20050816) | None (candidate not yet proposed) | View |
Page 974 of 20943, showing 5 records out of 104715 total, starting on record 4866, ending on 4870