CVE List

Id CVE No. Status Description Phase Votes Comments Actions
30214  CVE-2008-0097  Candidate  Format string vulnerability in the log function in Georgia SoftWorks SSH2 Server (GSW_SSHD) 7.01.0003 and earlier allows remote attackers to execute arbitrary code via format string specifiers in the username field, as demonstrated by a certain LoginPassword message.  Assigned (20080107)  None (candidate not yet proposed)    View
95750  CVE-2016-8930  Candidate  IBM Kenexa LMS on Cloud is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database.  Assigned (20161025)  None (candidate not yet proposed)    View
30470  CVE-2008-0353  Candidate  SQL injection vulnerability in visualizza_tabelle.php in php-residence 0.7.2 and 1.0 allows remote attackers to execute arbitrary SQL commands via the cognome_cerca parameter. NOTE: some of these details are obtained from third party information.  Assigned (20080118)  None (candidate not yet proposed)    View
96006  CVE-2016-9186  Candidate  Unrestricted file upload vulnerability in the "legacy course files" and "file manager" modules in Moodle 3.1.2 allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension, and then accessing it via unspecified vectors.  Assigned (20161104)  None (candidate not yet proposed)    View
30726  CVE-2008-0609  Candidate  Directory traversal vulnerability in index.php in DivideConcept VHD Web Pack 2.0 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the page parameter.  Assigned (20080205)  None (candidate not yet proposed)    View

Page 526 of 20943, showing 5 records out of 104715 total, starting on record 2626, ending on 2630

Actions