CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
36073 | CVE-2008-5956 | Candidate | Wbstreet (aka PHPSTREET Webboard) 1.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain database credentials via a direct request to connect.inc. | Assigned (20090123) | None (candidate not yet proposed) | View | |
101609 | CVE-2017-4789 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20161226) | None (candidate not yet proposed) | View | |
36329 | CVE-2008-6212 | Candidate | Cross-site scripting (XSS) vulnerability in admin.php in Php-Stats 0.1.9.1 allows remote attackers to inject arbitrary web script or HTML via the (1) sel_mese and (2) sel_anno parameters in a systems action. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | Assigned (20090219) | None (candidate not yet proposed) | View | |
101865 | CVE-2017-5045 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20170102) | None (candidate not yet proposed) | View | |
36585 | CVE-2008-6468 | Candidate | SQL injection vulnerability in index.php in Diesel Pay allows remote attackers to execute arbitrary SQL commands via the area parameter in a browse action. | Assigned (20090313) | None (candidate not yet proposed) | View |
Page 19185 of 20943, showing 5 records out of 104715 total, starting on record 95921, ending on 95925