CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10252  CVE-2004-1825  Candidate  Cross-site scripting (XSS) vulnerability in index.php in Mambo Open Source 4.5 stable 1.0.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) return or (2) mos_change_template parameters.  Assigned (20050504)  None (candidate not yet proposed)    View
75788  CVE-2014-8487  Candidate  Kony Management (aka Enterprise Mobile Management or EMM) 1.2 and earlier allows remote authenticated users to read (1) arbitrary messages via the messageId parameter to selfservice/managedevice/getMessageBody or (2) requests via the requestId parameter to selfservice/devicemgmt/getDeviceInfoTab.htm.  Assigned (20141026)  None (candidate not yet proposed)    View
10508  CVE-2004-2082  Candidate  The samiftp.dll library in Sami FTP Server 1.1.3 allows remote authenticated users to cause a denial of service (pmsystem.exe crash) via a GET request wit a large number of leading "/" (slash) characters.  Assigned (20050519)  None (candidate not yet proposed)    View
76044  CVE-2014-8743  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in the Maestro module 7.x-1.x before 7.x-1.4 for Drupal allow remote authenticated users with certain permissions to inject arbitrary web script or HTML via a (1) Role or (2) Organic Group name.  Assigned (20141013)  None (candidate not yet proposed)    View
10764  CVE-2004-2338  Candidate  OpenBSD 3.3 and 3.4 does not properly parse Accept and Deny rules without netmasks on big-endian 64-bit platforms such as SPARC64, which may allow remote attackers to bypass access restrictions.  Assigned (20050816)  None (candidate not yet proposed)    View

Page 983 of 20943, showing 5 records out of 104715 total, starting on record 4911, ending on 4915

Actions