CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
58729 | CVE-2012-5486 | Candidate | ZPublisher.HTTPRequest._scrubHeader in Zope 2 before 2.13.19, as used in Plone before 4.3 beta 1, allows remote attackers to inject arbitrary HTTP headers via a linefeed (LF) character. | Assigned (20121024) | None (candidate not yet proposed) | View | |
12000 | CVE-2005-0794 | Candidate | ZPanel 2.0 and 2.5 beta 10 does not remove or protect installation scripts after they have been used, which allows remote attackers to reinstall the software and possibly cause a denial of service via a direct request to install.php. | Assigned (20050320) | None (candidate not yet proposed) | View | |
87455 | CVE-2016-1000217 | Candidate | Zotpress plugin for WordPress SQLi in zp_get_account() | Assigned (20160909) | None (candidate not yet proposed) | View | |
13858 | CVE-2005-2652 | Candidate | Zorum 3.5 allows remote attackers to obtain the full installation path via direct requests to (1) gorum/notification.php, (2) user.php, (3) attach.php, (4) blacklist.php, (5) zorum/forum.php, (6) globalstat.php, (7) gorum/trace.php, (8) gorum/badwords.php, or (9) gorum/flood.php. | Assigned (20050821) | None (candidate not yet proposed) | View | |
4103 | CVE-2001-1299 | Entry | Zorbat Zorbstats PHP script before 0.9 allows remote attackers to include arbitrary files from remote web sites via an HTTP request that sets the includedir variable. | View |
Page 10 of 20943, showing 5 records out of 104715 total, starting on record 46, ending on 50