CVE List

Id CVE No. Status Description Phase Votes Comments Actions
38914  CVE-2009-1479  Candidate  Directory traversal vulnerability in client/desktop/default.htm in Boxalino before 09.05.25-0421 allows remote attackers to read arbitrary files via a .. (dot dot) in the url parameter.  Assigned (20090429)  None (candidate not yet proposed)    View
104450  CVE-2017-7630  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170410)  None (candidate not yet proposed)    View
39170  CVE-2009-1735  Candidate  Cross-site scripting (XSS) vulnerability in search.php in VidSharePro allows remote attackers to inject arbitrary web script or HTML via the searchtxt parameter. NOTE: some of these details are obtained from third party information.  Assigned (20090520)  None (candidate not yet proposed)    View
104706  CVE-2017-7886  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170416)  None (candidate not yet proposed)    View
39426  CVE-2009-1991  Candidate  Unspecified vulnerability in the Oracle Text component in Oracle Database 9.2.0.8, 9.2.0.8DV, 10.1.0.5, and 10.2.0.4 allows remote authenticated users to affect confidentiality and integrity, related to CTXSYS.DRVXTABC. NOTE: the previous information was obtained from the October 2009 CPU. Oracle has not commented on claims from an established researcher that this is for multiple SQL injection vulnerabilities via the (1) idx_owner or (2) idx_name parameters to the create_tables procedure.  Assigned (20090608)  None (candidate not yet proposed)    View

Page 219 of 20943, showing 5 records out of 104715 total, starting on record 1091, ending on 1095

Actions