CVE List

Id CVE No. Status Description Phase Votes Comments Actions
37368  CVE-2008-7251  Candidate  libraries/File.class.php in phpMyAdmin 2.11.x before 2.11.10 creates a temporary directory with 0777 permissions, which has unknown impact and attack vectors.  Assigned (20100112)  None (candidate not yet proposed)    View
102904  CVE-2017-6084  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170218)  None (candidate not yet proposed)    View
37624  CVE-2009-0189  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2009-1012. Reason: This candidate is a reservation duplicate of CVE-2009-1012. Notes: All CVE users should reference CVE-2009-1012 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.  Assigned (20090120)  None (candidate not yet proposed)    View
103160  CVE-2017-6340  Candidate  Trend Micro InterScan Web Security Virtual Appliance (IWSVA) 6.5 before CP 1746 does not sanitize a rest/commonlog/report/template name field, which allows a "Reports Only" user to inject malicious JavaScript while creating a new report. Additionally, IWSVA implements incorrect access control that allows any authenticated, remote user (even with low privileges like "Auditor") to create or modify reports, and consequently take advantage of this XSS vulnerability. The JavaScript is executed when victims visit reports or auditlog pages.  Assigned (20170226)  None (candidate not yet proposed)    View
37880  CVE-2009-0445  Candidate  SQL injection vulnerability in index.php in Dreampics Gallery Builder allows remote attackers to execute arbitrary SQL commands via the exhibition_id parameter in a gallery.viewPhotos action.  Assigned (20090205)  None (candidate not yet proposed)    View

Page 20359 of 20943, showing 5 records out of 104715 total, starting on record 101791, ending on 101795

Actions