CVE List

Id CVE No. Status Description Phase Votes Comments Actions
27654  CVE-2007-4297  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in yorumkaydet.asp in Dersimiz Haber Ekleme Modulu allow remote attackers to inject arbitrary web script or HTML via the (1) yazan, (2) mail, and (3) yorum parameters. NOTE: some of these details are obtained from third party information.  Assigned (20070810)  None (candidate not yet proposed)    View
93190  CVE-2016-6370  Candidate  Directory traversal vulnerability in the web interface in Cisco Hosted Collaboration Mediation Fulfillment (HCM-F) 10.6(3) and earlier allows remote authenticated users to read arbitrary files via a crafted pathname in an HTTP request, aka Bug ID CSCuz27255.  Assigned (20160726)  None (candidate not yet proposed)    View
27910  CVE-2007-4553  Candidate  The Thomson ST 2030 SIP phone with software 1.52.1 allows remote attackers to cause a denial of service (device hang) via an INVITE message with a Via header that contains a "/" (slash) instead of the required space following the SIP version number.  Assigned (20070827)  None (candidate not yet proposed)    View
93446  CVE-2016-6626  Candidate  An issue was discovered in phpMyAdmin. An attacker could redirect a user to a malicious web page. All 4.6.x versions (prior to 4.6.4), 4.4.x versions (prior to 4.4.15.8), and 4.0.x versions (prior to 4.0.10.17) are affected.  Assigned (20160806)  None (candidate not yet proposed)    View
28166  CVE-2007-4809  Candidate  Multiple PHP remote file inclusion vulnerabilities in Online Fantasy Football League (OFFL) 0.2.6 allow remote attackers to execute arbitrary PHP code via a URL in the DOC_ROOT parameter to (1) lib/functions.php or (2) lib/header.php.  Assigned (20070911)  None (candidate not yet proposed)    View

Page 522 of 20943, showing 5 records out of 104715 total, starting on record 2606, ending on 2610

Actions