CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4608  CVE-2002-0216  Candidate  userinfo.php in XOOPS 1.0 RC1 allows remote attackers to obtain sensitive information via a SQL injection attack in the "uid" parameter.  Proposed (20020502)  ACCEPT(1) Green | NOOP(3) Cole, Foat, Wall    View
70144  CVE-2014-2849  Candidate  The Change Password dialog box (change_password) in Sophos Web Appliance before 3.8.2 allows remote authenticated users to change the admin user password via a crafted request.  Assigned (20140411)  None (candidate not yet proposed)    View
4864  CVE-2002-0472  Candidate  MSN Messenger Service 3.6, and possibly other versions, uses weak authentication when exchanging messages between clients, which allows remote attackers to spoof messages from other users.  Proposed (20020611)  ACCEPT(2) Frech, Green | NOOP(3) Cole, Cox, Foat | REVIEWING(1) Wall    View
70400  CVE-2014-3105  Candidate  The OSLC integration feature in the Web component in IBM Rational ClearQuest 7.1 before 7.1.2.15, 8.0.0 before 8.0.0.12, and 8.0.1 before 8.0.1.5 provides different error messages for failed login attempts depending on whether the username exists, which allows remote attackers to enumerate account names via a series of requests.  Assigned (20140429)  None (candidate not yet proposed)    View
5120  CVE-2002-0730  Candidate  Cross-site scripting vulnerability in guestbook.pl for Philip Chinery"s Guestbook 1.1 allows remote attackers to execute Javascript or HTML via fields such as (1) Name, (2) EMail, or (3) Homepage.  Proposed (20020726)  NOOP(5) Armstrong, Cole, Cox, Foat, Wall    View

Page 7 of 20943, showing 5 records out of 104715 total, starting on record 31, ending on 35

<<first 3 | 4 | 5 | 6 | 7 | 8 | 9 | 10 | 11 last>>

Actions