CVE List

Id CVE No. Status Description Phase Votes Comments Actions
37881  CVE-2009-0446  Candidate  SQL injection vulnerability in photo.php in WEBalbum 2.4b allows remote attackers to execute arbitrary SQL commands via the id parameter.  Assigned (20090205)  None (candidate not yet proposed)    View
103417  CVE-2017-6597  Candidate  A vulnerability in the local-mgmt CLI command of the Cisco Unified Computing System (UCS) Manager, Cisco Firepower 4100 Series Next-Generation Firewall (NGFW), and Cisco Firepower 9300 Security Appliance could allow an authenticated, local attacker to perform a command injection attack. More Information: CSCvb61394 CSCvb86816. Known Affected Releases: 2.0(1.68) 3.1(1k)A. Known Fixed Releases: 92.2(1.101) 92.1(1.1658) 2.0(1.115).  Assigned (20170309)  None (candidate not yet proposed)    View
38137  CVE-2009-0702  Candidate  SQL injection vulnerability in the Phoca Documentation (com_phocadocumentation) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a section action to index.php.  Assigned (20090223)  None (candidate not yet proposed)    View
103673  CVE-2017-6853  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170312)  None (candidate not yet proposed)    View
38393  CVE-2009-0958  Candidate  Apple iPhone OS 1.0 through 2.2.1 and iPhone OS for iPod touch 1.1 through 2.2.1 stores an exception for a hostname when the user accepts an untrusted Exchange server certificate, which causes it to be accepted without prompting in future usage and allows remote Exchange servers to obtain sensitive information such as credentials.  Assigned (20090318)  None (candidate not yet proposed)    View

Page 20443 of 20943, showing 5 records out of 104715 total, starting on record 102211, ending on 102215

Actions