CVE List

Id CVE No. Status Description Phase Votes Comments Actions
32531  CVE-2008-2414  Candidate  Cross-site scripting (XSS) vulnerability in send_email.php in AN Guestbook (ANG) 0.4 allows remote attackers to inject arbitrary web script or HTML via the postid parameter.  Assigned (20080522)  None (candidate not yet proposed)    View
98067  CVE-2017-1247  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20161130)  None (candidate not yet proposed)    View
32787  CVE-2008-2670  Candidate  Multiple SQL injection vulnerabilities in index.php in Insanely Simple Blog 0.5 allow remote attackers to execute arbitrary SQL commands via (1) the id parameter, or (2) the term parameter in a search action. NOTE: the current_subsection parameter is already covered by CVE-2007-3889.  Assigned (20080611)  None (candidate not yet proposed)    View
98323  CVE-2017-1503  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20161130)  None (candidate not yet proposed)    View
33043  CVE-2008-2926  Candidate  The kmxfw.sys driver in CA Host-Based Intrusion Prevention System (HIPS) r8, as used in CA Internet Security Suite and Personal Firewall, does not properly verify IOCTL requests, which allows local users to cause a denial of service (system crash) or possibly gain privileges via a crafted request.  Assigned (20080630)  None (candidate not yet proposed)    View

Page 1560 of 20943, showing 5 records out of 104715 total, starting on record 7796, ending on 7800

Actions