CVE List

Id CVE No. Status Description Phase Votes Comments Actions
34322  CVE-2008-4205  Candidate  SQL injection vulnerability in search.php Attachmax Dolphin 2.1.0 and earlier allows remote attackers to execute arbitrary SQL commands via the category parameter in a Search action to index.php. NOTE: some of these details are obtained from third party information.  Assigned (20080924)  None (candidate not yet proposed)    View
99858  CVE-2017-3038  Candidate  Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have an exploitable memory corruption vulnerability when parsing TTF (TrueType font format) stream data. Successful exploitation could lead to arbitrary code execution.  Assigned (20161202)  None (candidate not yet proposed)    View
34578  CVE-2008-4461  Candidate  SQL injection vulnerability in advanced_search_results.php in Vastal I-Tech Dating Zone, possibly 0.9.9, allows remote attackers to execute arbitrary SQL commands via the fage parameter.  Assigned (20081006)  None (candidate not yet proposed)    View
100114  CVE-2017-3294  Candidate  Vulnerability in the Oracle Outside In Technology component of Oracle Fusion Middleware (subcomponent: Outside In Filters ). Supported versions that are affected are 8.5.2 and 8.5.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Outside In Technology. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Oracle Outside In Technology. Note: Outside In Technology is a suite of software development kits (SDKs). The protocol and CVSS score depend on the software that uses the Outside In Technology code. The CVSS score assumes that the software passes data received over a network directly to Outside In Technology code, but if data is not received over a network the CVSS score may be lower. CVSS v3.0 Base Score 7.5 (Availability impacts).  Assigned (20161206)  None (candidate not yet proposed)    View
34834  CVE-2008-4717  Candidate  SQL injection vulnerability in bannerclick.php in ZEELYRICS 2.0 allows remote attackers to execute arbitrary SQL commands via the adid parameter.  Assigned (20081023)  None (candidate not yet proposed)    View

Page 1473 of 20943, showing 5 records out of 104715 total, starting on record 7361, ending on 7365

Actions