CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
8284 | CVE-2003-1460 | Candidate | Worker Filemanager 1.0 through 2.7 sets the permissions on the destination directory to world-readable and executable while copying data, which could allow local users to obtain sensitive information. | Assigned (20071022) | None (candidate not yet proposed) | View | |
5227 | CVE-2002-0837 | Candidate | wordtrans 1.1pre8 and earlier in the wordtrans-web package allows remote attackers to (1) execute arbitrary code or (2) conduct cross-site scripting attacks via certain parameters (possibly "dict") to the wordtrans.php script. | Proposed (20030317) | ACCEPT(4) Armstrong, Cole, Cox, Green | Cox> I believe this to mean "multiple exploit vectors" for the single | vulnerability. The patch to correct this issue was a single line that | would remove any non-alphabetic characters from the "dict" parameter. | View |
92655 | CVE-2016-5835 | Candidate | WordPress before 4.5.3 allows remote attackers to obtain sensitive revision-history information by leveraging the ability to read a post, related to wp-admin/includes/ajax-actions.php and wp-admin/revision.php. | Assigned (20160623) | None (candidate not yet proposed) | View | |
92659 | CVE-2016-5839 | Candidate | WordPress before 4.5.3 allows remote attackers to bypass the sanitize_file_name protection mechanism via unspecified vectors. | Assigned (20160623) | None (candidate not yet proposed) | View | |
92658 | CVE-2016-5838 | Candidate | WordPress before 4.5.3 allows remote attackers to bypass intended password-change restrictions by leveraging knowledge of a cookie. | Assigned (20160623) | None (candidate not yet proposed) | View |
Page 143 of 20943, showing 5 records out of 104715 total, starting on record 711, ending on 715