CVE List

Id CVE No. Status Description Phase Votes Comments Actions
33281  CVE-2008-3164  Candidate  Directory traversal vulnerability in blog.php in fuzzylime (cms) 3.01, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the file parameter. NOTE: it was later reported that 3.01a is also affected.  Assigned (20080714)  None (candidate not yet proposed)    View
98817  CVE-2017-1997  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20161130)  None (candidate not yet proposed)    View
33537  CVE-2008-3420  Candidate  Multiple SQL injection vulnerabilities in Mobius for Mimsy XG 1 1.4.4.1 and earlier allow remote attackers to execute arbitrary SQL commands via (1) the id parameter to browse.php or (2) the s parameter in an exhibitions action to detail.php.  Assigned (20080731)  None (candidate not yet proposed)    View
99073  CVE-2017-2253  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20161201)  None (candidate not yet proposed)    View
33793  CVE-2008-3676  Candidate  Unspecified vulnerability in the IMAP server in hMailServer 4.4.1 allows remote authenticated users to cause a denial of service (resource exhaustion or daemon crash) via a long series of IMAP commands.  Assigned (20080814)  None (candidate not yet proposed)    View

Page 162 of 20943, showing 5 records out of 104715 total, starting on record 806, ending on 810

Actions