CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10766  CVE-2004-2340  Candidate  ** UNVERIFIABLE ** SQL injection vulnerability in PunkBuster Screenshot Database (PB-DB) Alpha 6 allows remote attackers to execute arbitrary SQL commands via the username and password fields of the login form. NOTE: the original vulnerability report contains several significant inconsistencies that make it unclear whether the report is accurate, including (1) PB-DB is really the "PunkBuster Screenshot Database" and not "PunkBuster" itself; (2) there is no apparent association between PunkBuster and "Punky Brewster"; (3) the claimed source code is not anywhere in Alpha 6.  Assigned (20050816)  None (candidate not yet proposed)    View
76302  CVE-2014-9001  Candidate  reminders/index.php in Incredible PBX 11 2.0.6.5.0 allows remote authenticated users to execute arbitrary commands via shell metacharacters in the (1) APPTMIN, (2) APPTHR, (3) APPTDA, (4) APPTMO, (5) APPTYR, or (6) APPTPHONE parameters.  Assigned (20141119)  None (candidate not yet proposed)    View
11022  CVE-2004-2596  Candidate  Quake II server before R1Q2, as used in multiple products, allows remote attackers to cause a denial of service (exhaustion of connection slots) via a large number of connections from the same IP address.  Assigned (20051129)  None (candidate not yet proposed)    View
76558  CVE-2014-9257  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20141204)  None (candidate not yet proposed)    View
11278  CVE-2005-0072  Candidate  zhcon before 0.2 does not drop privileges before reading a user configuration file, which allows local users to read arbitrary files.  Assigned (20050114)  None (candidate not yet proposed)    View

Page 1144 of 20943, showing 5 records out of 104715 total, starting on record 5716, ending on 5720

Actions