CVE List

Id CVE No. Status Description Phase Votes Comments Actions
102158  CVE-2017-5338  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.  Assigned (20170110)  None (candidate not yet proposed)    View
36878  CVE-2008-6761  Candidate  Static code injection vulnerability in admin/install.php in Flexcustomer 0.0.6 might allow remote attackers to inject arbitrary PHP code into const.inc.php via the installdbname parameter (aka the Database Name field). NOTE: the installation instructions specify deleting admin/install.php.  Assigned (20090428)  None (candidate not yet proposed)    View
102414  CVE-2017-5594  Candidate  An issue was discovered in Pagekit CMS before 1.0.11. In this vulnerability the remote attacker is able to reset the registered user"s password, when the debug toolbar is enabled. The password is successfully recovered using this exploit. The SecureLayer7 ID is SL7_PGKT_01.  Assigned (20170125)  None (candidate not yet proposed)    View
37134  CVE-2008-7017  Candidate  Cross-site scripting (XSS) vulnerability in analyse.php in CAcert 20080921, and possibly other versions before 20080928, allows remote attackers to inject arbitrary web script or HTML via the CN (CommonName) field in the subject of an X.509 certificate.  Assigned (20090821)  None (candidate not yet proposed)    View
102670  CVE-2017-5850  Candidate  httpd in OpenBSD allows remote attackers to cause a denial of service (memory consumption) via a series of requests for a large file using an HTTP Range header.  Assigned (20170201)  None (candidate not yet proposed)    View

Page 1171 of 20943, showing 5 records out of 104715 total, starting on record 5851, ending on 5855

Actions