CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
34293 | CVE-2008-4176 | Candidate | SQL injection vulnerability in izle.asp in FoT Video scripti 1.1 beta allows remote attackers to execute arbitrary SQL commands via the oyun parameter. | Assigned (20080923) | None (candidate not yet proposed) | View | |
99829 | CVE-2017-3009 | Candidate | Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable buffer overflow vulnerability in the JPEG2000 parser. Successful exploitation could lead to information disclosure. | Assigned (20161202) | None (candidate not yet proposed) | View | |
34549 | CVE-2008-4432 | Candidate | Cross-site scripting (XSS) vulnerability in search.php in the RMSOFT MiniShop module 1.0 for Xoops allows remote attackers to inject arbitrary web script or HTML via the itemsxpag parameter. | Assigned (20081003) | None (candidate not yet proposed) | View | |
100085 | CVE-2017-3265 | Candidate | Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Packaging). Supported versions that are affected are 5.5.53 and earlier, 5.6.34 and earlier and 5.7.16 and earlier. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where MySQL Server executes to compromise MySQL Server. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all MySQL Server accessible data and unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS v3.0 Base Score 5.6 (Confidentiality and Availability impacts). | Assigned (20161206) | None (candidate not yet proposed) | View | |
34805 | CVE-2008-4688 | Candidate | core/string_api.php in Mantis before 1.1.3 does not check the privileges of the viewer before composing a link with issue data in the source anchor, which allows remote attackers to discover an issue"s title and status via a request with a modified issue number. | Assigned (20081022) | None (candidate not yet proposed) | View |
Page 20108 of 20943, showing 5 records out of 104715 total, starting on record 100536, ending on 100540