CVE List

Id CVE No. Status Description Phase Votes Comments Actions
36073  CVE-2008-5956  Candidate  Wbstreet (aka PHPSTREET Webboard) 1.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain database credentials via a direct request to connect.inc.  Assigned (20090123)  None (candidate not yet proposed)    View
101609  CVE-2017-4789  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20161226)  None (candidate not yet proposed)    View
36329  CVE-2008-6212  Candidate  Cross-site scripting (XSS) vulnerability in admin.php in Php-Stats 0.1.9.1 allows remote attackers to inject arbitrary web script or HTML via the (1) sel_mese and (2) sel_anno parameters in a systems action. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.  Assigned (20090219)  None (candidate not yet proposed)    View
101865  CVE-2017-5045  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170102)  None (candidate not yet proposed)    View
36585  CVE-2008-6468  Candidate  SQL injection vulnerability in index.php in Diesel Pay allows remote attackers to execute arbitrary SQL commands via the area parameter in a browse action.  Assigned (20090313)  None (candidate not yet proposed)    View

Page 19185 of 20943, showing 5 records out of 104715 total, starting on record 95921, ending on 95925

Actions