CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
29931 | CVE-2007-6574 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in Dokeos 1.8.4 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the origin parameter to work/work.php in a display_upload_form action, or the forum parameter to (2) forum/viewforum.php or (3) forum/viewthread.php. | Assigned (20071228) | None (candidate not yet proposed) | View | |
95467 | CVE-2016-8647 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20161012) | None (candidate not yet proposed) | View | |
30187 | CVE-2008-0070 | Candidate | Integer overflow in Orb Networks Orb 2.00.1014 and Winamp Remote BETA allows remote attackers to execute arbitrary code via an RPC request that specifies a large number of array dimensions, which triggers a heap-based buffer overflow. | Assigned (20080103) | None (candidate not yet proposed) | View | |
95723 | CVE-2016-8903 | Candidate | SQL injection vulnerability in the "Site Browser > Templates pages" screen in dotCMS before 3.3.1 allows remote authenticated attackers to execute arbitrary SQL commands via the orderby parameter. | Assigned (20161024) | None (candidate not yet proposed) | View | |
30443 | CVE-2008-0326 | Candidate | SQL injection vulnerability in class/show.php in FaScript FaPersianHack 1.0 allows remote attackers to execute arbitrary SQL commands via the id parameter to show.php. | Assigned (20080117) | None (candidate not yet proposed) | View |
Page 18707 of 20943, showing 5 records out of 104715 total, starting on record 93531, ending on 93535