CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8284  CVE-2003-1460  Candidate  Worker Filemanager 1.0 through 2.7 sets the permissions on the destination directory to world-readable and executable while copying data, which could allow local users to obtain sensitive information.  Assigned (20071022)  None (candidate not yet proposed)    View
5227  CVE-2002-0837  Candidate  wordtrans 1.1pre8 and earlier in the wordtrans-web package allows remote attackers to (1) execute arbitrary code or (2) conduct cross-site scripting attacks via certain parameters (possibly "dict") to the wordtrans.php script.  Proposed (20030317)  ACCEPT(4) Armstrong, Cole, Cox, Green  Cox> I believe this to mean "multiple exploit vectors" for the single | vulnerability. The patch to correct this issue was a single line that | would remove any non-alphabetic characters from the "dict" parameter.  View
92655  CVE-2016-5835  Candidate  WordPress before 4.5.3 allows remote attackers to obtain sensitive revision-history information by leveraging the ability to read a post, related to wp-admin/includes/ajax-actions.php and wp-admin/revision.php.  Assigned (20160623)  None (candidate not yet proposed)    View
92659  CVE-2016-5839  Candidate  WordPress before 4.5.3 allows remote attackers to bypass the sanitize_file_name protection mechanism via unspecified vectors.  Assigned (20160623)  None (candidate not yet proposed)    View
92658  CVE-2016-5838  Candidate  WordPress before 4.5.3 allows remote attackers to bypass intended password-change restrictions by leveraging knowledge of a cookie.  Assigned (20160623)  None (candidate not yet proposed)    View

Page 143 of 20943, showing 5 records out of 104715 total, starting on record 711, ending on 715

Actions