CVE List

Id CVE No. Status Description Phase Votes Comments Actions
35825  CVE-2008-5708  Candidate  redirect.php in SlimCMS 1.0.0 does not require authentication, which allows remote attackers to create administrative users by using the newusername and newpassword parameters and setting the newisadmin parameter to 1.  Assigned (20081224)  None (candidate not yet proposed)    View
101361  CVE-2017-4541  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20161226)  None (candidate not yet proposed)    View
36081  CVE-2008-5964  Candidate  Session fixation vulnerability in Social ImpressCMS before 1.1.1 RC1 allows remote attackers to hijack web sessions by setting the PHPSESSID parameter.  Assigned (20090123)  None (candidate not yet proposed)    View
101617  CVE-2017-4797  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20161226)  None (candidate not yet proposed)    View
36337  CVE-2008-6220  Candidate  SQL injection vulnerability in login.php in Simple Document Management System (SDMS) 1.1.5 and 1.1.4, and possibly earlier, allows remote attackers to execute arbitrary SQL commands via the pass parameter.  Assigned (20090220)  None (candidate not yet proposed)    View

Page 19802 of 20943, showing 5 records out of 104715 total, starting on record 99006, ending on 99010

Actions