CVE List

Id CVE No. Status Description Phase Votes Comments Actions
38921  CVE-2009-1486  Candidate  Directory traversal vulnerability in pmscript.php in Flatchat 3.0 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the with parameter.  Assigned (20090429)  None (candidate not yet proposed)    View
104457  CVE-2017-7637  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170410)  None (candidate not yet proposed)    View
39177  CVE-2009-1742  Candidate  code.php in PC4Arb Pc4 Uploader 9.0 and earlier makes it easier for remote attackers to conduct SQL injection attacks via crafted keyword sequences that are removed from a filter in the id parameter in a banner action, as demonstrated via the "UNIunionON" string, which is collapsed into "UNION" by the filter_sql function.  Assigned (20090520)  None (candidate not yet proposed)    View
104713  CVE-2017-7893  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170417)  None (candidate not yet proposed)    View
39433  CVE-2009-1998  Candidate  Unspecified vulnerability in the Oracle Communications Order and Service Management component in Oracle Industry Applications 2.8.0, 6.2.0, 6.3.0, and 6.3.1 allows remote authenticated users to affect confidentiality and integrity via unknown vectors.  Assigned (20090608)  None (candidate not yet proposed)    View

Page 1389 of 20943, showing 5 records out of 104715 total, starting on record 6941, ending on 6945

Actions