CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
25582 | CVE-2007-2225 | Candidate | A component in Microsoft Outlook Express 6 and Windows Mail in Windows Vista does not properly handle certain HTTP headers when processing MHTML protocol URLs, which allows remote attackers to obtain sensitive information from other Internet Explorer domains, aka "URL Parsing Cross Domain Information Disclosure Vulnerability." | Assigned (20070424) | None (candidate not yet proposed) | View | |
91118 | CVE-2016-4299 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20160427) | None (candidate not yet proposed) | View | |
25838 | CVE-2007-2481 | Candidate | PHP remote file inclusion vulnerability in wordtube-button.php in the wordTube 1.43 and earlier plugin for WordPress, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the wpPATH parameter. | Assigned (20070503) | None (candidate not yet proposed) | View | |
91374 | CVE-2016-4555 | Candidate | client_side_request.cc in Squid 3.x before 3.5.18 and 4.x before 4.0.10 allows remote servers to cause a denial of service (crash) via crafted Edge Side Includes (ESI) responses. | Assigned (20160506) | None (candidate not yet proposed) | View | |
26094 | CVE-2007-2737 | Candidate | SQL injection vulnerability in index.php in the MyConference 1.0 module for Xoops allows remote attackers to execute arbitrary SQL commands via the cid parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | Assigned (20070517) | None (candidate not yet proposed) | View |
Page 19555 of 20943, showing 5 records out of 104715 total, starting on record 97771, ending on 97775