CVE List

Id CVE No. Status Description Phase Votes Comments Actions
34276  CVE-2008-4159  Candidate  SQL injection vulnerability in index.php in Jaw Portal and Zanfi CMS lite and allows remote attackers to execute arbitrary SQL commands via the page (pageid) parameter.  Assigned (20080922)  None (candidate not yet proposed)    View
99812  CVE-2017-2992  Candidate  Adobe Flash Player versions 24.0.0.194 and earlier have an exploitable heap overflow vulnerability when parsing an MP4 header. Successful exploitation could lead to arbitrary code execution.  Assigned (20161202)  None (candidate not yet proposed)    View
34532  CVE-2008-4415  Candidate  Unspecified vulnerability in HP Service Manager (HPSM) before 7.01.71 allows remote authenticated users to execute arbitrary code via unknown vectors.  Assigned (20081003)  None (candidate not yet proposed)    View
100068  CVE-2017-3248  Candidate  Vulnerability in the Oracle WebLogic Server component of Oracle Fusion Middleware (subcomponent: Core Components). Supported versions that are affected are 10.3.6.0, 12.1.3.0, 12.2.1.0 and 12.2.1.1. Easily exploitable vulnerability allows unauthenticated attacker with network access via T3 to compromise Oracle WebLogic Server. Successful attacks of this vulnerability can result in takeover of Oracle WebLogic Server. CVSS v3.0 Base Score 9.8 (Confidentiality, Integrity and Availability impacts).  Assigned (20161206)  None (candidate not yet proposed)    View
34788  CVE-2008-4671  Candidate  Cross-site scripting (XSS) vulnerability in wp-admin/wp-blogs.php in Wordpress MU (WPMU) before 2.6 allows remote attackers to inject arbitrary web script or HTML via the (1) s and (2) ip_address parameters.  Assigned (20081021)  None (candidate not yet proposed)    View

Page 18767 of 20943, showing 5 records out of 104715 total, starting on record 93831, ending on 93835

Actions