CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
32507 | CVE-2008-2390 | Candidate | Hpufunction.dll 4.0.0.1 in HP Software Update exposes the unsafe (1) ExecuteAsync and (2) Execute methods, which allows remote attackers to execute arbitrary code via an absolute pathname in the first argument. | Assigned (20080521) | None (candidate not yet proposed) | View | |
98043 | CVE-2017-1223 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20161130) | None (candidate not yet proposed) | View | |
32763 | CVE-2008-2646 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in meBiblio 0.4.7 allow remote attackers to inject arbitrary web script or HTML via the (1) sql parameter to dbadd.inc.php, (2) InsertJournal parameter to add_journal_mask.inc.php, (3) InsertBibliography parameter to insert_mask.inc.php, and (4) LabelYear parameter to search_mask.inc.php. | Assigned (20080610) | None (candidate not yet proposed) | View | |
98299 | CVE-2017-1479 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20161130) | None (candidate not yet proposed) | View | |
33019 | CVE-2008-2902 | Candidate | SQL injection vulnerability in profile.php in AlstraSoft AskMe Pro 2.1 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter. NOTE: The que_id parameter to forum_answer.php is already covered by CVE-2007-4085. | Assigned (20080630) | None (candidate not yet proposed) | View |
Page 20568 of 20943, showing 5 records out of 104715 total, starting on record 102836, ending on 102840