CVE List

Id CVE No. Status Description Phase Votes Comments Actions
103919  CVE-2017-7099  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170317)  None (candidate not yet proposed)    View
38639  CVE-2009-1204  Candidate  Cross-site scripting (XSS) vulnerability in TikiWiki (Tiki) CMS/Groupware 2.2 allows remote attackers to inject arbitrary web script or HTML via the PHP_SELF portion of a URI to (1) tiki-galleries.php, (2) tiki-list_file_gallery.php, (3) tiki-listpages.php, and (4) tiki-orphan_pages.php.  Assigned (20090331)  None (candidate not yet proposed)    View
104175  CVE-2017-7355  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170330)  None (candidate not yet proposed)    View
38895  CVE-2009-1460  Candidate  razorCMS before 0.4 uses weak permissions for (1) admin/core/admin_config.php, which allows local users to obtain the administrator"s password hash and FTP user credentials; and (2) the root directory, (3) datastore/, and (4) admin/core/, which allows local users to have an unspecified impact.  Assigned (20090428)  None (candidate not yet proposed)    View
104431  CVE-2017-7611  Candidate  The check_symtab_shndx function in elflint.c in elfutils 0.168 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted ELF file.  Assigned (20170409)  None (candidate not yet proposed)    View

Page 19640 of 20943, showing 5 records out of 104715 total, starting on record 98196, ending on 98200

Actions