CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
25838 | CVE-2007-2481 | Candidate | PHP remote file inclusion vulnerability in wordtube-button.php in the wordTube 1.43 and earlier plugin for WordPress, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the wpPATH parameter. | Assigned (20070503) | None (candidate not yet proposed) | View | |
91374 | CVE-2016-4555 | Candidate | client_side_request.cc in Squid 3.x before 3.5.18 and 4.x before 4.0.10 allows remote servers to cause a denial of service (crash) via crafted Edge Side Includes (ESI) responses. | Assigned (20160506) | None (candidate not yet proposed) | View | |
26094 | CVE-2007-2737 | Candidate | SQL injection vulnerability in index.php in the MyConference 1.0 module for Xoops allows remote attackers to execute arbitrary SQL commands via the cid parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | Assigned (20070517) | None (candidate not yet proposed) | View | |
91630 | CVE-2016-4811 | Candidate | The NTT Broadband Platform Japan Connected-free Wi-Fi application 1.15.1 and earlier for Android and 1.13.0 and earlier for iOS allows man-in-the-middle attackers to obtain API access via unspecified vectors. | Assigned (20160517) | None (candidate not yet proposed) | View | |
26350 | CVE-2007-2993 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in OmegaMw7.asp in OMEGA (aka Omegasoft) INterneSErvicesLosungen (INSEL) allow remote attackers to inject arbitrary web script or HTML via (1) user-created text fields; the (2) F05003, (3) F05005, and (4) F05015 fields; and other unspecified standard fields. | Assigned (20070604) | None (candidate not yet proposed) | View |
Page 18939 of 20943, showing 5 records out of 104715 total, starting on record 94691, ending on 94695