CVE List

Id CVE No. Status Description Phase Votes Comments Actions
25838  CVE-2007-2481  Candidate  PHP remote file inclusion vulnerability in wordtube-button.php in the wordTube 1.43 and earlier plugin for WordPress, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the wpPATH parameter.  Assigned (20070503)  None (candidate not yet proposed)    View
91374  CVE-2016-4555  Candidate  client_side_request.cc in Squid 3.x before 3.5.18 and 4.x before 4.0.10 allows remote servers to cause a denial of service (crash) via crafted Edge Side Includes (ESI) responses.  Assigned (20160506)  None (candidate not yet proposed)    View
26094  CVE-2007-2737  Candidate  SQL injection vulnerability in index.php in the MyConference 1.0 module for Xoops allows remote attackers to execute arbitrary SQL commands via the cid parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.  Assigned (20070517)  None (candidate not yet proposed)    View
91630  CVE-2016-4811  Candidate  The NTT Broadband Platform Japan Connected-free Wi-Fi application 1.15.1 and earlier for Android and 1.13.0 and earlier for iOS allows man-in-the-middle attackers to obtain API access via unspecified vectors.  Assigned (20160517)  None (candidate not yet proposed)    View
26350  CVE-2007-2993  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in OmegaMw7.asp in OMEGA (aka Omegasoft) INterneSErvicesLosungen (INSEL) allow remote attackers to inject arbitrary web script or HTML via (1) user-created text fields; the (2) F05003, (3) F05005, and (4) F05015 fields; and other unspecified standard fields.  Assigned (20070604)  None (candidate not yet proposed)    View

Page 18939 of 20943, showing 5 records out of 104715 total, starting on record 94691, ending on 94695

Actions