CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
96277 | CVE-2016-9457 | Candidate | Revive Adserver before 3.2.3 suffers from Reflected XSS. `www/admin/stats.php` is vulnerable to reflected XSS attacks via multiple parameters that are not properly sanitised or escaped when displayed, such as setPerPage, pageId, bannerid, period_start, period_end, and possibly others. | Assigned (20161119) | None (candidate not yet proposed) | View | |
30997 | CVE-2008-0880 | Candidate | SQL injection vulnerability in modules.php in the EasyContent module for PHP-Nuke allows remote attackers to execute arbitrary SQL commands via the page_id parameter. | Assigned (20080221) | None (candidate not yet proposed) | View | |
96533 | CVE-2016-9713 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20161201) | None (candidate not yet proposed) | View | |
31253 | CVE-2008-1136 | Candidate | The Utils::runScripts function in src/utils.cpp in vdccm 0.92 through 0.10.0 in SynCE (SynCE-dccm) allows remote attackers to execute arbitrary commands via shell metacharacters in a certain string to TCP port 5679. | Assigned (20080304) | None (candidate not yet proposed) | View | |
96789 | CVE-2016-9969 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20161216) | None (candidate not yet proposed) | View |
Page 1698 of 20943, showing 5 records out of 104715 total, starting on record 8486, ending on 8490