CVE List

Id CVE No. Status Description Phase Votes Comments Actions
35844  CVE-2008-5727  Candidate  SQL injection vulnerability in modules/auth/password_recovery.php in AIST NetCat 3.12 and earlier, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the query string.  Assigned (20081226)  None (candidate not yet proposed)    View
101380  CVE-2017-4560  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20161226)  None (candidate not yet proposed)    View
36100  CVE-2008-5983  Candidate  Untrusted search path vulnerability in the PySys_SetArgv API function in Python 2.6 and earlier, and possibly later versions, prepends an empty string to sys.path when the argv[0] argument does not contain a path separator, which might allow local users to execute arbitrary code via a Trojan horse Python file in the current working directory.  Assigned (20090127)  None (candidate not yet proposed)    View
101636  CVE-2017-4816  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20161226)  None (candidate not yet proposed)    View
36356  CVE-2008-6239  Candidate  Cross-site request forgery (CSRF) vulnerability in OpenEdit Digital Asset Management (DAM) before 5.2014 allows remote attackers to perform unspecified actions as arbitrary users via unknown vectors.  Assigned (20090223)  None (candidate not yet proposed)    View

Page 374 of 20943, showing 5 records out of 104715 total, starting on record 1866, ending on 1870

Actions