CVE List

Id CVE No. Status Description Phase Votes Comments Actions
36886  CVE-2008-6769  Candidate  Unrestricted file upload vulnerability in upload.php in YourPlace 1.0.2 and earlier allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file.  Assigned (20090429)  None (candidate not yet proposed)    View
102422  CVE-2017-5602  Candidate  An incorrect implementation of "XEP-0280: Message Carbons" in multiple XMPP clients allows a remote attacker to impersonate any user, including contacts, in the vulnerable application"s display. This allows for various kinds of social engineering attacks. This CVE is for jappix 1.0.0 to 1.1.6.  Assigned (20170128)  None (candidate not yet proposed)    View
37142  CVE-2008-7025  Candidate  TrueVector in Check Point ZoneAlarm 8.0.020.000, with vsmon.exe running, allows remote HTTP proxies to cause a denial of service (crash) and disable the HIDS module via a crafted response.  Assigned (20090821)  None (candidate not yet proposed)    View
102678  CVE-2017-5858  Candidate  An incorrect implementation of "XEP-0280: Message Carbons" in multiple XMPP clients allows a remote attacker to impersonate any user, including contacts, in the vulnerable application"s display. This allows for various kinds of social engineering attacks. This CVE is for Converse.js (0.8.0 - 1.0.6, 2.0.0 - 2.0.4).  Assigned (20170202)  None (candidate not yet proposed)    View
37398  CVE-2008-7281  Candidate  Open Ticket Request System (OTRS) before 2.2.7 sends e-mail containing a Bcc header field that lists the Blind Carbon Copy recipients, which allows remote attackers to obtain potentially sensitive e-mail address information by reading this field.  Assigned (20110318)  None (candidate not yet proposed)    View

Page 1806 of 20943, showing 5 records out of 104715 total, starting on record 9026, ending on 9030

Actions