CVE List

Id CVE No. Status Description Phase Votes Comments Actions
36591  CVE-2008-6474  Candidate  The management interface in F5 BIG-IP 9.4.3 allows remote authenticated users with Resource Manager privileges to inject arbitrary Perl code via unspecified configuration settings related to Perl EP3 with templates, probably triggering static code injection.  Assigned (20090316)  None (candidate not yet proposed)    View
102127  CVE-2017-5307  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170109)  None (candidate not yet proposed)    View
36847  CVE-2008-6730  Candidate  Multiple SQL injection vulnerabilities in admin/usercheck.php in FlexPHPLink Pro 0.0.6 and 0.0.7, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via (1) the checkuser parameter (aka username field), or (2) the checkpass parameter (aka password field), to admin/index.php.  Assigned (20090420)  None (candidate not yet proposed)    View
102383  CVE-2017-5563  Candidate  LibTIFF version 4.0.7 is vulnerable to a heap-based buffer over-read in tif_lzw.c resulting in DoS or code execution via a crafted bmp image to tools/bmp2tiff.  Assigned (20170122)  None (candidate not yet proposed)    View
37103  CVE-2008-6986  Candidate  SQL injection vulnerability in the actionMultipleAddProduct function in includes/classes/shopping_cart.php in Zen Cart 1.3.0 through 1.3.8a, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the products_id array parameter in a multiple_products_add_product action, a different vulnerability than CVE-2008-6985.  Assigned (20090817)  None (candidate not yet proposed)    View

Page 19637 of 20943, showing 5 records out of 104715 total, starting on record 98181, ending on 98185

Actions