CVE List

Id CVE No. Status Description Phase Votes Comments Actions
29180  CVE-2007-5823  Candidate  Directory traversal vulnerability in forum.php in Ben Ng Scribe 0.2 and earlier allows remote attackers to create or overwrite arbitrary files via a .. (dot dot) in the username parameter in a Register action.  Assigned (20071105)  None (candidate not yet proposed)    View
94716  CVE-2016-7896  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20160909)  None (candidate not yet proposed)    View
29436  CVE-2007-6079  Candidate  Directory traversal vulnerability in include/common.php in bcoos 1.0.10 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the xoopsOption[pagetype] parameter to the default URI for modules/news/. NOTE: this can be leveraged by using legitimate product functionality to upload a file that contains the code, then including that file.  Assigned (20071121)  None (candidate not yet proposed)    View
94972  CVE-2016-8152  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20160909)  None (candidate not yet proposed)    View
29692  CVE-2007-6335  Candidate  Integer overflow in libclamav in ClamAV before 0.92 allows remote attackers to execute arbitrary code via a crafted MEW packed PE file, which triggers a heap-based buffer overflow.  Assigned (20071213)  None (candidate not yet proposed)    View

Page 20669 of 20943, showing 5 records out of 104715 total, starting on record 103341, ending on 103345

Actions