CVE List

Id CVE No. Status Description Phase Votes Comments Actions
36100  CVE-2008-5983  Candidate  Untrusted search path vulnerability in the PySys_SetArgv API function in Python 2.6 and earlier, and possibly later versions, prepends an empty string to sys.path when the argv[0] argument does not contain a path separator, which might allow local users to execute arbitrary code via a Trojan horse Python file in the current working directory.  Assigned (20090127)  None (candidate not yet proposed)    View
101636  CVE-2017-4816  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20161226)  None (candidate not yet proposed)    View
36356  CVE-2008-6239  Candidate  Cross-site request forgery (CSRF) vulnerability in OpenEdit Digital Asset Management (DAM) before 5.2014 allows remote attackers to perform unspecified actions as arbitrary users via unknown vectors.  Assigned (20090223)  None (candidate not yet proposed)    View
101892  CVE-2017-5072  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170102)  None (candidate not yet proposed)    View
36612  CVE-2008-6495  Candidate  Cross-site scripting (XSS) vulnerability in index.php in Fritz Berger yet another php photo album - next generation (yappa-ng) 2.3.2 allows remote attackers to inject arbitrary web script or HTML via the album parameter.  Assigned (20090319)  None (candidate not yet proposed)    View

Page 379 of 20943, showing 5 records out of 104715 total, starting on record 1891, ending on 1895

Actions