CVE List

Id CVE No. Status Description Phase Votes Comments Actions
28164  CVE-2007-4807  Candidate  Multiple PHP remote file inclusion vulnerabilities in Focus/SIS 2.2 allow remote attackers to execute arbitrary PHP code via a URL in the staticpath parameter to (1) modules/Discipline/CategoryBreakdownTime.php or (2) modules/Discipline/StudentFieldBreakdown.php.  Assigned (20070911)  None (candidate not yet proposed)    View
93700  CVE-2016-6880  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20160818)  None (candidate not yet proposed)    View
28420  CVE-2007-5063  Candidate  Adam Scheinberg Flip 3.0 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a file containing login credentials via a direct request for var/users.txt.  Assigned (20070924)  None (candidate not yet proposed)    View
93956  CVE-2016-7136  Candidate  z3c.form in Plone CMS 5.x through 5.0.6 and 4.x through 4.3.11 allows remote attackers to conduct cross-site scripting (XSS) attacks via a crafted GET request.  Assigned (20160905)  None (candidate not yet proposed)    View
28676  CVE-2007-5319  Candidate  Unspecified vulnerability in the vuidmice STREAMS modules in Sun Solaris 8, 9, and 10 allows local users with console (/dev/console) access to cause a denial of service ("unusable" system console) via unspecified vectors.  Assigned (20071009)  None (candidate not yet proposed)    View

Page 386 of 20943, showing 5 records out of 104715 total, starting on record 1926, ending on 1930

Actions