CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10487  CVE-2004-2061  Candidate  RiSearch 1.0.01 and RiSearch Pro 3.2.06 allows remote attackers to use the show.pl script as an open proxy, or read arbitrary local files, by setting the url parameter to a (1) http://, (2) ftp://, or (3) file:// URL.  Assigned (20050504)  None (candidate not yet proposed)    View
76023  CVE-2014-8722  Candidate  GetSimple CMS 3.3.4 allows remote attackers to obtain sensitive information via a direct request to (1) data/users/<username>.xml, (2) backups/users/<username>.xml.bak, (3) data/other/authorization.xml, or (4) data/other/appid.xml.  Assigned (20141110)  None (candidate not yet proposed)    View
10743  CVE-2004-2317  Candidate  Information leak in Mbedthis AppWeb HTTP server 1.0 through 1.1.2 allows remote attackers to obtain sensitive information via a user message that is generated when Mbedthis denies access.  Assigned (20050816)  None (candidate not yet proposed)    View
76279  CVE-2014-8978  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20141118)  None (candidate not yet proposed)    View
10999  CVE-2004-2573  Candidate  PHP remote file inclusion vulnerability in tables_update.inc.php in phpGroupWare 0.9.14.005 and earlier allows remote attackers to execute arbitrary PHP code via an external URL in the appdir parameter.  Assigned (20051128)  None (candidate not yet proposed)    View

Page 20225 of 20943, showing 5 records out of 104715 total, starting on record 101121, ending on 101125

Actions