CVE List

Id CVE No. Status Description Phase Votes Comments Actions
36097  CVE-2008-5980  Candidate  Ocean12 Mailing List Manager Gold stores sensitive data under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for o12mail.mdb.  Assigned (20090126)  None (candidate not yet proposed)    View
101633  CVE-2017-4813  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20161226)  None (candidate not yet proposed)    View
36353  CVE-2008-6236  Candidate  SQL injection vulnerability in login.php in Simple Document Management System (SDMS) 1.1.5 and 1.1.4, and possibly earlier, allows remote attackers to execute arbitrary SQL commands via the login parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.  Assigned (20090221)  None (candidate not yet proposed)    View
101889  CVE-2017-5069  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170102)  None (candidate not yet proposed)    View
36609  CVE-2008-6492  Candidate  Unrestricted file upload vulnerability in process.php in Tizag Countdown Creator 3 allows remote attackers to execute arbitrary code by uploading a file with an executable extension via index.php, then accessing the uploaded file via a direct request to the file in pics/. NOTE: some of these details are obtained from third party information.  Assigned (20090319)  None (candidate not yet proposed)    View

Page 137 of 20943, showing 5 records out of 104715 total, starting on record 681, ending on 685

Actions