CVE List

Id CVE No. Status Description Phase Votes Comments Actions
32024  CVE-2008-1907  Candidate  Multiple SQL injection vulnerabilities in functions/display_page.func.php in cpCommerce 1.1.0 allow remote attackers to execute arbitrary SQL commands via the (1) id_product, (2) id_manufacturer, and (3) id_category parameters to unspecified components. NOTE: this probably overlaps CVE-2007-2959 and CVE-2007-2890.  Assigned (20080421)  None (candidate not yet proposed)    View
97560  CVE-2017-0741  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20161129)  None (candidate not yet proposed)    View
32280  CVE-2008-2163  Candidate  Cross-site scripting (XSS) vulnerability in IBM Lotus Quickr 8.1 before Hotfix 5 for Windows and AIX, and before Hotfix 3 for i5/OS, allows remote attackers to inject arbitrary web script or HTML via unknown vectors related to "WYSIWYG editors."  Assigned (20080513)  None (candidate not yet proposed)    View
97816  CVE-2017-0997  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20161130)  None (candidate not yet proposed)    View
32536  CVE-2008-2419  Candidate  Mozilla Firefox 2.0.0.14 allows remote attackers to cause a denial of service (heap corruption and application crash) or possibly execute arbitrary code by triggering an error condition during certain Iframe operations between a JSframe write and a JSframe close, as demonstrated by an error in loading an empty Java applet defined by a "src="javascript:"" sequence.  Assigned (20080523)  None (candidate not yet proposed)    View

Page 1931 of 20943, showing 5 records out of 104715 total, starting on record 9651, ending on 9655

Actions