CVE List

Id CVE No. Status Description Phase Votes Comments Actions
32498  CVE-2008-2381  Candidate  SQL injection vulnerability in the create function in common/include/GroupJoinRequest.class in GForge 4.5 and 4.6 allows remote attackers to execute arbitrary SQL commands via the comments variable.  Assigned (20080521)  None (candidate not yet proposed)    View
98034  CVE-2017-1214  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20161130)  None (candidate not yet proposed)    View
32754  CVE-2008-2637  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in F5 FirePass SSL VPN 6.0.2 hotfix 3, and possibly earlier versions, allow remote attackers to inject arbitrary web script or HTML via quotes in (1) the css_exceptions parameter in vdesk/admincon/webyfiers.php and (2) the sql_matchscope parameter in vdesk/admincon/index.php.  Assigned (20080609)  None (candidate not yet proposed)    View
98290  CVE-2017-1470  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20161130)  None (candidate not yet proposed)    View
33010  CVE-2008-2893  Candidate  SQL injection vulnerability in news.php in AJ Square aj-hyip (aka AJ HYIP Acme) allows remote attackers to execute arbitrary SQL commands via the id parameter, a different vector than CVE-2008-2532.  Assigned (20080627)  None (candidate not yet proposed)    View

Page 19874 of 20943, showing 5 records out of 104715 total, starting on record 99366, ending on 99370

Actions