CVE List

Id CVE No. Status Description Phase Votes Comments Actions
30466  CVE-2008-0349  Candidate  Unspecified vulnerability in the PeopleTools component in Oracle PeopleSoft Enterprise and JD Edwards EnterpriseOne 8.48.15 and 8.49.07 has unknown impact and remote attack vectors, aka PSE02.  Assigned (20080117)  None (candidate not yet proposed)    View
96002  CVE-2016-9182  Candidate  Exponent CMS 2.4 uses PHP reflection to call a method of a controller class, and then uses the method name to check user permission. But, the method name in PHP reflection is case insensitive, and Exponent CMS permits undefined actions to execute by default, so an attacker can use a capitalized method name to bypass the permission check, e.g., controller=expHTMLEditor&action=preview&editor=ckeditor and controller=expHTMLEditor&action=Preview&editor=ckeditor. An anonymous user will be rejected for the former but can access the latter.  Assigned (20161104)  None (candidate not yet proposed)    View
30722  CVE-2008-0605  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in AstroSoft HelpDesk before 1.95.228 allow remote attackers to inject arbitrary web script or HTML via the (1) txtSearch parameter to operator/article/article_search_results.asp and the (2) Attach_Id parameter to operator/article/article_attachment.asp. NOTE: for vector 2, the XSS occurs in a forced SQL error message.  Assigned (20080205)  None (candidate not yet proposed)    View
96258  CVE-2016-9438  Candidate  An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m allows remote attackers to cause a denial of service (segmentation fault and crash) via a crafted HTML page.  Assigned (20161118)  None (candidate not yet proposed)    View
30978  CVE-2008-0861  Candidate  Cross-site scripting (XSS) vulnerability in leg/Main.nsf in IBM Lotus Quickplace 7.0 allows remote attackers to inject arbitrary web script or HTML via an h_SearchString sub-parameter in the PreSetFields parameter of an EditDocument action.  Assigned (20080220)  None (candidate not yet proposed)    View

Page 209 of 20943, showing 5 records out of 104715 total, starting on record 1041, ending on 1045

Actions