CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
36886 | CVE-2008-6769 | Candidate | Unrestricted file upload vulnerability in upload.php in YourPlace 1.0.2 and earlier allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file. | Assigned (20090429) | None (candidate not yet proposed) | View | |
102422 | CVE-2017-5602 | Candidate | An incorrect implementation of "XEP-0280: Message Carbons" in multiple XMPP clients allows a remote attacker to impersonate any user, including contacts, in the vulnerable application"s display. This allows for various kinds of social engineering attacks. This CVE is for jappix 1.0.0 to 1.1.6. | Assigned (20170128) | None (candidate not yet proposed) | View | |
37142 | CVE-2008-7025 | Candidate | TrueVector in Check Point ZoneAlarm 8.0.020.000, with vsmon.exe running, allows remote HTTP proxies to cause a denial of service (crash) and disable the HIDS module via a crafted response. | Assigned (20090821) | None (candidate not yet proposed) | View | |
102678 | CVE-2017-5858 | Candidate | An incorrect implementation of "XEP-0280: Message Carbons" in multiple XMPP clients allows a remote attacker to impersonate any user, including contacts, in the vulnerable application"s display. This allows for various kinds of social engineering attacks. This CVE is for Converse.js (0.8.0 - 1.0.6, 2.0.0 - 2.0.4). | Assigned (20170202) | None (candidate not yet proposed) | View | |
37398 | CVE-2008-7281 | Candidate | Open Ticket Request System (OTRS) before 2.2.7 sends e-mail containing a Bcc header field that lists the Blind Carbon Copy recipients, which allows remote attackers to obtain potentially sensitive e-mail address information by reading this field. | Assigned (20110318) | None (candidate not yet proposed) | View |
Page 1806 of 20943, showing 5 records out of 104715 total, starting on record 9026, ending on 9030