CVE List

Id CVE No. Status Description Phase Votes Comments Actions
27366  CVE-2007-4009  Candidate  PHP remote file inclusion vulnerability in admin/business_inc/saveserver.php in SWSoft Confixx Pro 2.0.12 through 3.3.1 allows remote attackers to execute arbitrary PHP code via a URL in the thisdir parameter.  Assigned (20070725)  None (candidate not yet proposed)    View
92902  CVE-2016-6082  Candidate  IBM BigFix Platform could allow a remote attacker to execute arbitrary code on the system, caused by a use-after-free race condition. An attacker could exploit this vulnerability to execute arbitrary code on the system.  Assigned (20160629)  None (candidate not yet proposed)    View
27622  CVE-2007-4265  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in VisionProject 3.1 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) projectIssueId parameter in EditProjectIssue.do, the (2) projectId parameter in ProjectSelected.do, the (3) folderId parameter in ProjectDocuments.do and the (4) sortField parameter in ProjectIssues.do.  Assigned (20070808)  None (candidate not yet proposed)    View
93158  CVE-2016-6338  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20160726)  None (candidate not yet proposed)    View
27878  CVE-2007-4521  Candidate  Asterisk Open Source 1.4.5 through 1.4.11, when configured to use an IMAP voicemail storage backend, allows remote attackers to cause a denial of service via an e-mail with an "invalid/corrupted" MIME body, which triggers a crash when the recipient listens to voicemail.  Assigned (20070824)  None (candidate not yet proposed)    View

Page 18940 of 20943, showing 5 records out of 104715 total, starting on record 94696, ending on 94700

Actions