CVE List

Id CVE No. Status Description Phase Votes Comments Actions
38146  CVE-2009-0711  Candidate  filter.php in PHPFootball 1.6 and earlier allows remote attackers to retrieve password hashes via a request with an Accounts value for the dbtable parameter, in conjunction with a Password value for the dbfield parameter. NOTE: this has been reported as a SQL injection vulnerability by some sources, but the provenance of that information is unknown.  Assigned (20090223)  None (candidate not yet proposed)    View
103682  CVE-2017-6862  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170313)  None (candidate not yet proposed)    View
38402  CVE-2009-0967  Candidate  The FTP server in Serv-U 7.0.0.1 through 7.4.0.1 allows remote authenticated users to cause a denial of service (service hang) via a large number of SMNT commands without an argument.  Assigned (20090318)  None (candidate not yet proposed)    View
103938  CVE-2017-7118  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170317)  None (candidate not yet proposed)    View
38658  CVE-2009-1223  Candidate  aspWebCalendar Free Edition stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing user credentials via a direct request for calendar/calendar.mdb.  Assigned (20090402)  None (candidate not yet proposed)    View

Page 221 of 20943, showing 5 records out of 104715 total, starting on record 1101, ending on 1105

Actions