CVE List

Id CVE No. Status Description Phase Votes Comments Actions
102373  CVE-2017-5553  Candidate  Cross-site scripting (XSS) vulnerability in plugins/markdown_plugin/_markdown.plugin.php in b2evolution before 6.8.5 allows remote authenticated users to inject arbitrary web script or HTML via a javascript: URL.  Assigned (20170122)  None (candidate not yet proposed)    View
37093  CVE-2008-6976  Candidate  MicroTik RouterOS 3.x through 3.13 and 2.x through 2.9.51 allows remote attackers to modify Network Management System (NMS) settings via a crafted SNMP set request.  Assigned (20090817)  None (candidate not yet proposed)    View
102629  CVE-2017-5809  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170201)  None (candidate not yet proposed)    View
37349  CVE-2008-7232  Candidate  Buffer overflow in the report function in xtacacsd 4.1.2 and earlier allows remote attackers to execute arbitrary code via a crafted CONNECT TACACS command.  Assigned (20090914)  None (candidate not yet proposed)    View
102885  CVE-2017-6065  Candidate  SQL injection vulnerability in inc/lib/Control/Backend/menus.control.php in GeniXCMS through 1.0.2 allows remote authenticated users to execute arbitrary SQL commands via the order parameter.  Assigned (20170217)  None (candidate not yet proposed)    View

Page 18878 of 20943, showing 5 records out of 104715 total, starting on record 94386, ending on 94390

Actions