CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
27654 | CVE-2007-4297 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in yorumkaydet.asp in Dersimiz Haber Ekleme Modulu allow remote attackers to inject arbitrary web script or HTML via the (1) yazan, (2) mail, and (3) yorum parameters. NOTE: some of these details are obtained from third party information. | Assigned (20070810) | None (candidate not yet proposed) | View | |
93190 | CVE-2016-6370 | Candidate | Directory traversal vulnerability in the web interface in Cisco Hosted Collaboration Mediation Fulfillment (HCM-F) 10.6(3) and earlier allows remote authenticated users to read arbitrary files via a crafted pathname in an HTTP request, aka Bug ID CSCuz27255. | Assigned (20160726) | None (candidate not yet proposed) | View | |
27910 | CVE-2007-4553 | Candidate | The Thomson ST 2030 SIP phone with software 1.52.1 allows remote attackers to cause a denial of service (device hang) via an INVITE message with a Via header that contains a "/" (slash) instead of the required space following the SIP version number. | Assigned (20070827) | None (candidate not yet proposed) | View | |
93446 | CVE-2016-6626 | Candidate | An issue was discovered in phpMyAdmin. An attacker could redirect a user to a malicious web page. All 4.6.x versions (prior to 4.6.4), 4.4.x versions (prior to 4.4.15.8), and 4.0.x versions (prior to 4.0.10.17) are affected. | Assigned (20160806) | None (candidate not yet proposed) | View | |
28166 | CVE-2007-4809 | Candidate | Multiple PHP remote file inclusion vulnerabilities in Online Fantasy Football League (OFFL) 0.2.6 allow remote attackers to execute arbitrary PHP code via a URL in the DOC_ROOT parameter to (1) lib/functions.php or (2) lib/header.php. | Assigned (20070911) | None (candidate not yet proposed) | View |
Page 522 of 20943, showing 5 records out of 104715 total, starting on record 2606, ending on 2610