CVE List

Id CVE No. Status Description Phase Votes Comments Actions
58729  CVE-2012-5486  Candidate  ZPublisher.HTTPRequest._scrubHeader in Zope 2 before 2.13.19, as used in Plone before 4.3 beta 1, allows remote attackers to inject arbitrary HTTP headers via a linefeed (LF) character.  Assigned (20121024)  None (candidate not yet proposed)    View
12000  CVE-2005-0794  Candidate  ZPanel 2.0 and 2.5 beta 10 does not remove or protect installation scripts after they have been used, which allows remote attackers to reinstall the software and possibly cause a denial of service via a direct request to install.php.  Assigned (20050320)  None (candidate not yet proposed)    View
87455  CVE-2016-1000217  Candidate  Zotpress plugin for WordPress SQLi in zp_get_account()  Assigned (20160909)  None (candidate not yet proposed)    View
13858  CVE-2005-2652  Candidate  Zorum 3.5 allows remote attackers to obtain the full installation path via direct requests to (1) gorum/notification.php, (2) user.php, (3) attach.php, (4) blacklist.php, (5) zorum/forum.php, (6) globalstat.php, (7) gorum/trace.php, (8) gorum/badwords.php, or (9) gorum/flood.php.  Assigned (20050821)  None (candidate not yet proposed)    View
4103  CVE-2001-1299  Entry  Zorbat Zorbstats PHP script before 0.9 allows remote attackers to include arbitrary files from remote web sites via an HTTP request that sets the includedir variable.        View

Page 10 of 20943, showing 5 records out of 104715 total, starting on record 46, ending on 50

<<first 6 | 7 | 8 | 9 | 10 | 11 | 12 | 13 | 14 last>>

Actions