CVE List

Id CVE No. Status Description Phase Votes Comments Actions
30442  CVE-2008-0325  Candidate  SQL injection vulnerability in show.php in FaScript FaPersian Petition allows remote attackers to execute arbitrary SQL commands via the id parameter.  Assigned (20080117)  None (candidate not yet proposed)    View
95978  CVE-2016-9158  Candidate  A vulnerability in SIEMENS SIMATIC S7-300 PN CPUs (all versions including V3.2.12) and SIMATIC S7-400 PN CPUs (V6 and V7) could allow a remote attacker to cause a Denial of Service condition by sending specially crafted packets to port 80/TCP.  Assigned (20161103)  None (candidate not yet proposed)    View
30698  CVE-2008-0581  Candidate  Geert Moernaut LSrunasE allows local users to gain privileges by obtaining the encrypted password from a batch file, and constructing a modified batch file that specifies this password in the /password switch and specifies an arbitrary program in the /command switch.  Assigned (20080204)  None (candidate not yet proposed)    View
96234  CVE-2016-9414  Candidate  MyBB (aka MyBulletinBoard) before 1.8.7 and MyBB Merge System before 1.8.7 allow remote attackers to obtain sensitive information by leveraging missing directory listing protection in upload directories.  Assigned (20161117)  None (candidate not yet proposed)    View
30954  CVE-2008-0837  Candidate  Cross-site scripting (XSS) vulnerability in the log feature in the John Godley Search Unleashed 0.2.10 plugin for WordPress allows remote attackers to inject arbitrary web script or HTML via the s parameter, which is not properly handled when the administrator views the log file.  Assigned (20080220)  None (candidate not yet proposed)    View

Page 19239 of 20943, showing 5 records out of 104715 total, starting on record 96191, ending on 96195

Actions