CVE List

Id CVE No. Status Description Phase Votes Comments Actions
26883  CVE-2007-3526  Candidate  Multiple SQL injection vulnerabilities in Buddy Zone 1.5 and earlier allow remote attackers to execute arbitrary SQL commands via (1) the news_id parameter to view_news.php, (2) the cat_id parameter to view_events.php, or (3) the member_id parameter to video_gallery.php.  Assigned (20070703)  None (candidate not yet proposed)    View
92419  CVE-2016-5600  Candidate  Unspecified vulnerability in the PeopleSoft Enterprise SCM Services Procurement component in Oracle PeopleSoft Products 9.1 and 9.2 allows remote authenticated users to affect confidentiality and integrity via unknown vectors.  Assigned (20160616)  None (candidate not yet proposed)    View
27139  CVE-2007-3782  Candidate  MySQL Community Server before 5.0.45 allows remote authenticated users to gain update privileges for a table in another database via a view that refers to this external table.  Assigned (20070715)  None (candidate not yet proposed)    View
92675  CVE-2016-5855  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20160628)  None (candidate not yet proposed)    View
27395  CVE-2007-4038  Candidate  Argument injection vulnerability in Mozilla Firefox before 2.0.0.5, when running on systems with Thunderbird 1.5 installed and certain URIs registered, allows remote attackers to conduct cross-browser scripting attacks and execute arbitrary commands via shell metacharacters in a mailto URI, which are inserted into the command line that is created when invoking Thunderbird.exe, a similar issue to CVE-2007-3670.  Assigned (20070727)  None (candidate not yet proposed)    View

Page 280 of 20943, showing 5 records out of 104715 total, starting on record 1396, ending on 1400

Actions