CVE List

Id CVE No. Status Description Phase Votes Comments Actions
36835  CVE-2008-6718  Candidate  U&M Software JustBookIt 1.0 does not require administrative authentication for all scripts in the admin/ directory, which allows remote attackers to have an unspecified impact via a direct request to (1) user_manual.php, (2) user_config.php, (3) user_kundnamn.php, (4) user_kundlista.php, (5) user_aktiva_kunder.php, (6) database.php, and possibly (7) index.php.  Assigned (20090413)  None (candidate not yet proposed)    View
102371  CVE-2017-5551  Candidate  The simple_set_acl function in fs/posix_acl.c in the Linux kernel before 4.9.6 preserves the setgid bit during a setxattr call involving a tmpfs filesystem, which allows local users to gain group privileges by leveraging the existence of a setgid program with restrictions on execute permissions. NOTE: this vulnerability exists because of an incomplete fix for CVE-2016-7097.  Assigned (20170120)  None (candidate not yet proposed)    View
37091  CVE-2008-6974  Candidate  Multiple cross-site request forgery (CSRF) vulnerabilities in apply.cgi in DD-WRT 24 sp1 and earlier allow remote attackers to hijack the authentication of administrators for requests that (1) execute arbitrary commands via the ping_ip parameter; (2) change the administrative credentials via the http_username and http_passwd parameters; (3) enable remote administration via the remote_management parameter; or (4) configure port forwarding via certain from, to, ip, and pro parameters.  Assigned (20090814)  None (candidate not yet proposed)    View
102627  CVE-2017-5807  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170201)  None (candidate not yet proposed)    View
37347  CVE-2008-7230  Candidate  Unspecified vulnerability in Small Footprint CIM Broker (SFCB) before 1.2.5 has unknown impact and attack vectors.  Assigned (20090914)  None (candidate not yet proposed)    View

Page 18674 of 20943, showing 5 records out of 104715 total, starting on record 93366, ending on 93370

Actions