CVE List

Id CVE No. Status Description Phase Votes Comments Actions
96277  CVE-2016-9457  Candidate  Revive Adserver before 3.2.3 suffers from Reflected XSS. `www/admin/stats.php` is vulnerable to reflected XSS attacks via multiple parameters that are not properly sanitised or escaped when displayed, such as setPerPage, pageId, bannerid, period_start, period_end, and possibly others.  Assigned (20161119)  None (candidate not yet proposed)    View
30997  CVE-2008-0880  Candidate  SQL injection vulnerability in modules.php in the EasyContent module for PHP-Nuke allows remote attackers to execute arbitrary SQL commands via the page_id parameter.  Assigned (20080221)  None (candidate not yet proposed)    View
96533  CVE-2016-9713  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20161201)  None (candidate not yet proposed)    View
31253  CVE-2008-1136  Candidate  The Utils::runScripts function in src/utils.cpp in vdccm 0.92 through 0.10.0 in SynCE (SynCE-dccm) allows remote attackers to execute arbitrary commands via shell metacharacters in a certain string to TCP port 5679.  Assigned (20080304)  None (candidate not yet proposed)    View
96789  CVE-2016-9969  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20161216)  None (candidate not yet proposed)    View

Page 1698 of 20943, showing 5 records out of 104715 total, starting on record 8486, ending on 8490

Actions