CVE List

Id CVE No. Status Description Phase Votes Comments Actions
28163  CVE-2007-4806  Candidate  PHP remote file inclusion vulnerability in modules/Discipline/CategoryBreakdownTime.php in Focus/SIS 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the FocusPath parameter.  Assigned (20070911)  None (candidate not yet proposed)    View
93699  CVE-2016-6879  Candidate  The X509_Certificate::allowed_usage function in botan 1.11.x before 1.11.31 might allow attackers to have unspecified impact by leveraging a call with more than one Key_Usage set in the enum value.  Assigned (20160818)  None (candidate not yet proposed)    View
28419  CVE-2007-5062  Candidate  account.php in Adam Scheinberg Flip 3.0 and earlier allows remote attackers to create administrative accounts via the un parameter in a register action.  Assigned (20070924)  None (candidate not yet proposed)    View
93955  CVE-2016-7135  Candidate  Directory traversal vulnerability in Plone CMS 5.x through 5.0.6 and 4.2.x through 4.3.11 allows remote administrators to read arbitrary files via a .. (dot dot) in the path parameter in a getFile action to Plone/++theme++barceloneta/@@plone.resourceeditor.filemanager-actions.  Assigned (20160905)  None (candidate not yet proposed)    View
28675  CVE-2007-5318  Candidate  Unspecified vulnerability in preview.php in TYPOlight webCMS 2.4.6 allows remote attackers to download arbitrary files via the src parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.  Assigned (20071009)  None (candidate not yet proposed)    View

Page 282 of 20943, showing 5 records out of 104715 total, starting on record 1406, ending on 1410

Actions