CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
30735 | CVE-2008-0618 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in the DMSGuestbook 1.8.0 and 1.7.0 plugin for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) gbname, (2) gbemail, (3) gburl, and (4) gbmsg parameters to unspecified programs. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | Assigned (20080205) | None (candidate not yet proposed) | View | |
96271 | CVE-2016-9451 | Candidate | Confirmation forms in Drupal 7.x before 7.52 make it easier for remote authenticated users to conduct open redirect attacks via unspecified vectors. | Assigned (20161118) | None (candidate not yet proposed) | View | |
30991 | CVE-2008-0874 | Candidate | SQL injection vulnerability in index.php in the eEmpregos module for XOOPS allows remote attackers to execute arbitrary SQL commands via the cid parameter in a view action. | Assigned (20080221) | None (candidate not yet proposed) | View | |
96527 | CVE-2016-9707 | Candidate | IBM Jazz Foundation is vulnerable to a denial of service, caused by an XML External Entity Injection (XXE) error when processing XML data. A remote attacker could exploit this vulnerability to expose highly sensitive information or consume all available memory resources. IBM Reference #: 2000784. | Assigned (20161201) | None (candidate not yet proposed) | View | |
31247 | CVE-2008-1130 | Candidate | Unspecified vulnerability in IBM WebSphere MQ 6.0.x before 6.0.2.2 and 5.3 before Fix Pack 14 allows attackers to bypass access restrictions for a queue manager via a SVRCONN (MQ client) channel. | Assigned (20080303) | None (candidate not yet proposed) | View |
Page 1256 of 20943, showing 5 records out of 104715 total, starting on record 6276, ending on 6280