CVE List

Id CVE No. Status Description Phase Votes Comments Actions
34790  CVE-2008-4673  Candidate  PHP remote file inclusion vulnerability in panel/common/theme/default/header_setup.php in WebBiscuits Software Events Calendar 1.1 allows remote attackers to execute arbitrary PHP code via a URL in the (1) path[docroot] and (2) component parameters.  Assigned (20081021)  None (candidate not yet proposed)    View
100326  CVE-2017-3506  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20161206)  None (candidate not yet proposed)    View
35046  CVE-2008-4929  Candidate  MyBB (aka MyBulletinBoard) 1.4.2 uses insufficient randomness to compose filenames of uploaded files used as attachments, which makes it easier for remote attackers to read these files by guessing filenames.  Assigned (20081104)  None (candidate not yet proposed)    View
100582  CVE-2017-3762  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20161216)  None (candidate not yet proposed)    View
35302  CVE-2008-5185  Candidate  The highlighting functionality in geshi.php in GeSHi before 1.0.8 allows remote attackers to cause a denial of service (infinite loop) via an XML sequence containing an opening delimiter without a closing delimiter, as demonstrated using "<".  Assigned (20081120)  None (candidate not yet proposed)    View

Page 18927 of 20943, showing 5 records out of 104715 total, starting on record 94631, ending on 94635

Actions