CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
30214 | CVE-2008-0097 | Candidate | Format string vulnerability in the log function in Georgia SoftWorks SSH2 Server (GSW_SSHD) 7.01.0003 and earlier allows remote attackers to execute arbitrary code via format string specifiers in the username field, as demonstrated by a certain LoginPassword message. | Assigned (20080107) | None (candidate not yet proposed) | View | |
95750 | CVE-2016-8930 | Candidate | IBM Kenexa LMS on Cloud is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database. | Assigned (20161025) | None (candidate not yet proposed) | View | |
30470 | CVE-2008-0353 | Candidate | SQL injection vulnerability in visualizza_tabelle.php in php-residence 0.7.2 and 1.0 allows remote attackers to execute arbitrary SQL commands via the cognome_cerca parameter. NOTE: some of these details are obtained from third party information. | Assigned (20080118) | None (candidate not yet proposed) | View | |
96006 | CVE-2016-9186 | Candidate | Unrestricted file upload vulnerability in the "legacy course files" and "file manager" modules in Moodle 3.1.2 allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension, and then accessing it via unspecified vectors. | Assigned (20161104) | None (candidate not yet proposed) | View | |
30726 | CVE-2008-0609 | Candidate | Directory traversal vulnerability in index.php in DivideConcept VHD Web Pack 2.0 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the page parameter. | Assigned (20080205) | None (candidate not yet proposed) | View |
Page 526 of 20943, showing 5 records out of 104715 total, starting on record 2626, ending on 2630