CVE List

Id CVE No. Status Description Phase Votes Comments Actions
25831  CVE-2007-2474  Candidate  Multiple PHP remote file inclusion vulnerabilities in Turnkey Web Tools SunShop Shopping Cart 4.0 allow remote attackers to execute arbitrary PHP code via a URL in the abs_path parameter to (1) include/payment/payflow_pro.php, (2) global.php, or (3) libsecure.php, different vectors than CVE-2007-2070.  Assigned (20070502)  None (candidate not yet proposed)    View
91367  CVE-2016-4548  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20160505)  None (candidate not yet proposed)    View
26087  CVE-2007-2730  Candidate  Check Point ZoneAlarm Pro before 6.5.737.000 does not properly test for equivalence of process identifiers for certain Microsoft Windows API functions in the NT kernel 5.0 and greater, which allows local users to call these functions, and bypass firewall rules or gain privileges, via a modified identifier that is one, two, or three greater than the canonical identifier.  Assigned (20070516)  None (candidate not yet proposed)    View
91623  CVE-2016-4804  Candidate  The read_boot function in boot.c in dosfstools before 4.0 allows attackers to cause a denial of service (crash) via a crafted filesystem, which triggers a heap-based buffer overflow in the (1) read_fat function or an out-of-bounds heap read in (2) get_fat function.  Assigned (20160514)  None (candidate not yet proposed)    View
26343  CVE-2007-2986  Candidate  PHP remote file inclusion vulnerability in lib/live_status.lib.php in AdminBot MX 9.0.5 allows remote attackers to execute arbitrary PHP code via a URL in the ROOT parameter.  Assigned (20070531)  None (candidate not yet proposed)    View

Page 18979 of 20943, showing 5 records out of 104715 total, starting on record 94891, ending on 94895

Actions