CVE List

Id CVE No. Status Description Phase Votes Comments Actions
36840  CVE-2008-6723  Candidate  TurnkeyForms Entertainment Portal 2.0 allows remote attackers to bypass authentication and gain administrative access by setting the adminLogged cookie to Administrator.  Assigned (20090414)  None (candidate not yet proposed)    View
102376  CVE-2017-5556  Candidate  The ConvertToPDF plugin in Foxit Reader before 8.2 and PhantomPDF before 8.2 on Windows, when the gflags app is enabled, allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted JPEG image. The vulnerability could lead to information disclosure; an attacker can leverage this in conjunction with other vulnerabilities to execute code in the context of the current process.  Assigned (20170122)  None (candidate not yet proposed)    View
37096  CVE-2008-6979  Candidate  Cross-site scripting (XSS) vulnerability in as_archives.php in phpAdultSite CMS, possibly 2.3.2, allows remote attackers to inject arbitrary web script or HTML via the results_per_page parameter to index.php. NOTE: some of these details are obtained from third party information. NOTE: this issue might be resultant from a separate SQL injection vulnerability.  Assigned (20090817)  None (candidate not yet proposed)    View
102632  CVE-2017-5812  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170201)  None (candidate not yet proposed)    View
37352  CVE-2008-7235  Candidate  Unspecified vulnerability in the Oracle Forms component in Oracle Application Server 10.1.2.2 and E-Business Suite 12.0.3 allows remote attackers to affect integrity via unknown vectors, aka AS04.  Assigned (20090914)  None (candidate not yet proposed)    View

Page 19089 of 20943, showing 5 records out of 104715 total, starting on record 95441, ending on 95445

Actions