CVE List

Id CVE No. Status Description Phase Votes Comments Actions
101912  CVE-2017-5092  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170102)  None (candidate not yet proposed)    View
36632  CVE-2008-6515  Candidate  Cross-site scripting (XSS) vulnerability in Fritz Berger yet another php photo album - next generation (yappa-ng) allows remote attackers to inject arbitrary web script or HTML via the query string to the default URI.  Assigned (20090324)  None (candidate not yet proposed)    View
102168  CVE-2017-5348  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170111)  None (candidate not yet proposed)    View
36888  CVE-2008-6771  Candidate  YourPlace 1.0.2 and earlier allows remote attackers to obtain sensitive system information via a direct request via a direct request to user/uploads/phpinfo.php, which calls the phpinfo function.  Assigned (20090429)  None (candidate not yet proposed)    View
102424  CVE-2017-5604  Candidate  An incorrect implementation of "XEP-0280: Message Carbons" in multiple XMPP clients allows a remote attacker to impersonate any user, including contacts, in the vulnerable application"s display. This allows for various kinds of social engineering attacks. This CVE is for mcabber 1.0.0 - 1.0.4.  Assigned (20170128)  None (candidate not yet proposed)    View

Page 1938 of 20943, showing 5 records out of 104715 total, starting on record 9686, ending on 9690

Actions