CVE List

Id CVE No. Status Description Phase Votes Comments Actions
26904  CVE-2007-3547  Candidate  Directory traversal vulnerability in qti_checkname.php in QuickTicket 1.2 allows remote attackers to include and execute arbitrary local files a .. (dot dot) in the lang parameter.  Assigned (20070703)  None (candidate not yet proposed)    View
92440  CVE-2016-5621  Candidate  Unspecified vulnerability in the Oracle FLEXCUBE Universal Banking component in Oracle Financial Services Applications 11.3.0, 11.4.0, 12.0.1 and 12.0.3, 12.1.0, and 12.2.0 allows remote authenticated users to affect confidentiality via vectors related to INFRA, a different vulnerability than CVE-2016-5603.  Assigned (20160616)  None (candidate not yet proposed)    View
27160  CVE-2007-3803  Candidate  The SMTP ALG in Clavister CorePlus before 8.80.04, and 8.81.00, does not properly parse SMTP commands in certain circumstances, which allows remote attackers to bypass address blacklists.  Assigned (20070716)  None (candidate not yet proposed)    View
92696  CVE-2016-5876  Candidate  ownCloud server before 8.2.6 and 9.x before 9.0.3, when the gallery app is enabled, allows remote attackers to download arbitrary images via a direct request.  Assigned (20160629)  None (candidate not yet proposed)    View
27416  CVE-2007-4059  Candidate  Absolute path traversal vulnerability in a certain ActiveX control in IntraProcessLogging.dll 5.5.3.42958 in EMC VMware allows remote attackers to create or overwrite arbitrary files via a full pathname in the argument to the SetLogFileName method.  Assigned (20070730)  None (candidate not yet proposed)    View

Page 1923 of 20943, showing 5 records out of 104715 total, starting on record 9611, ending on 9615

Actions