CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
96654 | CVE-2016-9834 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20161205) | None (candidate not yet proposed) | View | |
99982 | CVE-2017-3162 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20161205) | None (candidate not yet proposed) | View | |
96655 | CVE-2016-9835 | Candidate | Directory traversal vulnerability in file "jcss.php" in Zikula 1.3.x before 1.3.11 and 1.4.x before 1.4.4 on Windows allows a remote attacker to launch a PHP object injection by uploading a serialized file. | Assigned (20161205) | None (candidate not yet proposed) | View | |
99983 | CVE-2017-3163 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20161205) | None (candidate not yet proposed) | View | |
96656 | CVE-2016-9836 | Candidate | The file scanning mechanism of JFilterInput::isFileSafe() in Joomla! CMS before 3.6.5 does not consider alternative PHP file extensions when checking uploaded files for PHP content, which enables a user to upload and execute files with the `.php6`, `.php7`, `.phtml`, and `.phpt` extensions. Additionally, JHelperMedia::canUpload() did not blacklist these file extensions as uploadable file types. | Assigned (20161205) | None (candidate not yet proposed) | View |
Page 1634 of 20943, showing 5 records out of 104715 total, starting on record 8166, ending on 8170