CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
35844 | CVE-2008-5727 | Candidate | SQL injection vulnerability in modules/auth/password_recovery.php in AIST NetCat 3.12 and earlier, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the query string. | Assigned (20081226) | None (candidate not yet proposed) | View | |
101380 | CVE-2017-4560 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20161226) | None (candidate not yet proposed) | View | |
36100 | CVE-2008-5983 | Candidate | Untrusted search path vulnerability in the PySys_SetArgv API function in Python 2.6 and earlier, and possibly later versions, prepends an empty string to sys.path when the argv[0] argument does not contain a path separator, which might allow local users to execute arbitrary code via a Trojan horse Python file in the current working directory. | Assigned (20090127) | None (candidate not yet proposed) | View | |
101636 | CVE-2017-4816 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20161226) | None (candidate not yet proposed) | View | |
36356 | CVE-2008-6239 | Candidate | Cross-site request forgery (CSRF) vulnerability in OpenEdit Digital Asset Management (DAM) before 5.2014 allows remote attackers to perform unspecified actions as arbitrary users via unknown vectors. | Assigned (20090223) | None (candidate not yet proposed) | View |
Page 374 of 20943, showing 5 records out of 104715 total, starting on record 1866, ending on 1870