CVE List

Id CVE No. Status Description Phase Votes Comments Actions
104206  CVE-2017-7386  Candidate  citymont/symetrie v.0.9.6 is vulnerable to a reflected XSS in symetrie-master/app/commands/page.php (model parameter).  Assigned (20170331)  None (candidate not yet proposed)    View
38926  CVE-2009-1491  Candidate  McAfee GroupShield for Microsoft Exchange on Exchange Server 2000, and possibly other anti-virus or anti-spam products from McAfee or other vendors, does not scan X- headers for malicious content, which allows remote attackers to bypass virus detection via a crafted message, as demonstrated by a message with an X-Testing header and no message body.  Assigned (20090430)  None (candidate not yet proposed)    View
104462  CVE-2017-7642  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170410)  None (candidate not yet proposed)    View
39182  CVE-2009-1747  Candidate  SQL injection vulnerability in index.php in 26th Avenue bSpeak 1.10 allows remote attackers to execute arbitrary SQL commands via the forumid parameter in a post action.  Assigned (20090521)  None (candidate not yet proposed)    View
39438  CVE-2009-2003  Candidate  Ascad Networks Password Protector SD 1.3.1 allows remote attackers to bypass authentication and gain administrative access by setting the (1) c7portal and (2) cookname cookies to "admin."  Assigned (20090608)  None (candidate not yet proposed)    View

Page 1172 of 20943, showing 5 records out of 104715 total, starting on record 5856, ending on 5860

Actions