CVE List

Id CVE No. Status Description Phase Votes Comments Actions
30450  CVE-2008-0333  Candidate  Directory traversal vulnerability in download_view_attachment.aspx in AfterLogic MailBee WebMail Pro 4.1 for ASP.NET allows remote attackers to read arbitrary files via a .. (dot dot) in the temp_filename parameter.  Assigned (20080117)  None (candidate not yet proposed)    View
95986  CVE-2016-9166  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20161103)  None (candidate not yet proposed)    View
30706  CVE-2008-0589  Candidate  The ps program in bos.rte.control in IBM AIX 5.2, 5.3, and 6.1 allows local users to obtain sensitive information via unspecified vectors.  Assigned (20080204)  None (candidate not yet proposed)    View
96242  CVE-2016-9422  Candidate  An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. The feed_table_tag function in w3m doesn"t properly validate the value of table span, which allows remote attackers to cause a denial of service (stack and/or heap buffer overflow) and possibly execute arbitrary code via a crafted HTML page.  Assigned (20161118)  None (candidate not yet proposed)    View
30962  CVE-2008-0845  Candidate  SQL injection vulnerability in wp-people-popup.php in Dean Logan WP-People plugin 1.6.1 for WordPress allows remote attackers to execute arbitrary SQL commands via the person parameter.  Assigned (20080220)  None (candidate not yet proposed)    View

Page 19868 of 20943, showing 5 records out of 104715 total, starting on record 99336, ending on 99340

Actions