CVE List

Id CVE No. Status Description Phase Votes Comments Actions
36325  CVE-2008-6208  Candidate  Cross-site scripting (XSS) vulnerability in submitnews.php in e107 CMS 0.7.11 allows remote attackers to inject arbitrary web script or HTML via the (1) author_name, (2) itemtitle, and (3) item parameters. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.  Assigned (20090219)  None (candidate not yet proposed)    View
101861  CVE-2017-5041  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170102)  None (candidate not yet proposed)    View
36581  CVE-2008-6464  Candidate  SQL injection vulnerability in event.php in Mevin Productions Basic PHP Events Lister 1.0 allows remote attackers to execute arbitrary SQL commands via the id parameter.  Assigned (20090313)  None (candidate not yet proposed)    View
102117  CVE-2017-5297  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170109)  None (candidate not yet proposed)    View
36837  CVE-2008-6720  Candidate  SQL injection vulnerability in admin/adm_login.php in DeltaScripts PHP Links 1.3 and earlier allows remote attackers to execute arbitrary SQL commands via the admin_username parameter (aka the admin field).  Assigned (20090413)  None (candidate not yet proposed)    View

Page 18850 of 20943, showing 5 records out of 104715 total, starting on record 94246, ending on 94250

Actions