CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
34276 | CVE-2008-4159 | Candidate | SQL injection vulnerability in index.php in Jaw Portal and Zanfi CMS lite and allows remote attackers to execute arbitrary SQL commands via the page (pageid) parameter. | Assigned (20080922) | None (candidate not yet proposed) | View | |
99812 | CVE-2017-2992 | Candidate | Adobe Flash Player versions 24.0.0.194 and earlier have an exploitable heap overflow vulnerability when parsing an MP4 header. Successful exploitation could lead to arbitrary code execution. | Assigned (20161202) | None (candidate not yet proposed) | View | |
34532 | CVE-2008-4415 | Candidate | Unspecified vulnerability in HP Service Manager (HPSM) before 7.01.71 allows remote authenticated users to execute arbitrary code via unknown vectors. | Assigned (20081003) | None (candidate not yet proposed) | View | |
100068 | CVE-2017-3248 | Candidate | Vulnerability in the Oracle WebLogic Server component of Oracle Fusion Middleware (subcomponent: Core Components). Supported versions that are affected are 10.3.6.0, 12.1.3.0, 12.2.1.0 and 12.2.1.1. Easily exploitable vulnerability allows unauthenticated attacker with network access via T3 to compromise Oracle WebLogic Server. Successful attacks of this vulnerability can result in takeover of Oracle WebLogic Server. CVSS v3.0 Base Score 9.8 (Confidentiality, Integrity and Availability impacts). | Assigned (20161206) | None (candidate not yet proposed) | View | |
34788 | CVE-2008-4671 | Candidate | Cross-site scripting (XSS) vulnerability in wp-admin/wp-blogs.php in Wordpress MU (WPMU) before 2.6 allows remote attackers to inject arbitrary web script or HTML via the (1) s and (2) ip_address parameters. | Assigned (20081021) | None (candidate not yet proposed) | View |
Page 18767 of 20943, showing 5 records out of 104715 total, starting on record 93831, ending on 93835