CVE List

Id CVE No. Status Description Phase Votes Comments Actions
36351  CVE-2008-6234  Candidate  SQL injection vulnerability in the com_musica module in Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the id parameter to index.php.  Assigned (20090220)  None (candidate not yet proposed)    View
101887  CVE-2017-5067  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170102)  None (candidate not yet proposed)    View
36607  CVE-2008-6490  Candidate  function/update_xml.php in FLABER 1.1 and earlier allows remote attackers to overwrite arbitrary files by specifying the target filename in the target_file parameter. NOTE: this can be leveraged for code execution by overwriting a PHP file, as demonstrated using function/upload_file.php.  Assigned (20090318)  None (candidate not yet proposed)    View
102143  CVE-2017-5323  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170109)  None (candidate not yet proposed)    View
36863  CVE-2008-6746  Candidate  Cross-site scripting (XSS) vulnerability in the contact display view in Turba Contact Manager H3 before 2.2.1 allows remote attackers to inject arbitrary web script or HTML via the contact name.  Assigned (20090423)  None (candidate not yet proposed)    View

Page 20308 of 20943, showing 5 records out of 104715 total, starting on record 101536, ending on 101540

Actions