CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
28164 | CVE-2007-4807 | Candidate | Multiple PHP remote file inclusion vulnerabilities in Focus/SIS 2.2 allow remote attackers to execute arbitrary PHP code via a URL in the staticpath parameter to (1) modules/Discipline/CategoryBreakdownTime.php or (2) modules/Discipline/StudentFieldBreakdown.php. | Assigned (20070911) | None (candidate not yet proposed) | View | |
93700 | CVE-2016-6880 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20160818) | None (candidate not yet proposed) | View | |
28420 | CVE-2007-5063 | Candidate | Adam Scheinberg Flip 3.0 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a file containing login credentials via a direct request for var/users.txt. | Assigned (20070924) | None (candidate not yet proposed) | View | |
93956 | CVE-2016-7136 | Candidate | z3c.form in Plone CMS 5.x through 5.0.6 and 4.x through 4.3.11 allows remote attackers to conduct cross-site scripting (XSS) attacks via a crafted GET request. | Assigned (20160905) | None (candidate not yet proposed) | View | |
28676 | CVE-2007-5319 | Candidate | Unspecified vulnerability in the vuidmice STREAMS modules in Sun Solaris 8, 9, and 10 allows local users with console (/dev/console) access to cause a denial of service ("unusable" system console) via unspecified vectors. | Assigned (20071009) | None (candidate not yet proposed) | View |
Page 386 of 20943, showing 5 records out of 104715 total, starting on record 1926, ending on 1930