CVE List

Id CVE No. Status Description Phase Votes Comments Actions
34806  CVE-2008-4689  Candidate  Mantis before 1.1.3 does not unset the session cookie during logout, which makes it easier for remote attackers to hijack sessions.  Assigned (20081022)  None (candidate not yet proposed)    View
100342  CVE-2017-3522  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20161206)  None (candidate not yet proposed)    View
35062  CVE-2008-4945  Candidate  amlabel-cdrw in cdrw-taper 0.4 might allow local users to overwrite arbitrary files via a symlink attack involving a /tmp/amlabel-cdrw.##### temporary directory.  Assigned (20081105)  None (candidate not yet proposed)    View
100598  CVE-2017-3778  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20161216)  None (candidate not yet proposed)    View
35318  CVE-2008-5201  Candidate  Directory traversal vulnerability in index.php in OTManager CMS 24a allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the conteudo parameter. NOTE: in some environments, this can be leveraged for remote file inclusion by using a UNC share pathname or an ftp, ftps, or ssh2.sftp URL.  Assigned (20081121)  None (candidate not yet proposed)    View

Page 20186 of 20943, showing 5 records out of 104715 total, starting on record 100926, ending on 100930

Actions