CVE List

Id CVE No. Status Description Phase Votes Comments Actions
27911  CVE-2007-4554  Candidate  Cross-site scripting (XSS) vulnerability in tiki-remind_password.php in Tikiwiki (aka Tiki CMS/Groupware) 1.9.7 allows remote attackers to inject arbitrary web script or HTML via the username parameter. NOTE: this issue might be related to CVE-2006-2635.7.  Assigned (20070827)  None (candidate not yet proposed)    View
93447  CVE-2016-6627  Candidate  An issue was discovered in phpMyAdmin. An attacker can determine the phpMyAdmin host location through the file url.php. All 4.6.x versions (prior to 4.6.4), 4.4.x versions (prior to 4.4.15.8), and 4.0.x versions (prior to 4.0.10.17) are affected.  Assigned (20160806)  None (candidate not yet proposed)    View
28167  CVE-2007-4810  Candidate  Multiple SQL injection vulnerabilities in Netjuke 1.0-rc2 allow remote attackers to execute arbitrary SQL commands via (1) the ge_id parameter in a list.artists action to explore.php or (2) the id parameter in a show.tracks action to xml.php.  Assigned (20070911)  None (candidate not yet proposed)    View
93703  CVE-2016-6883  Candidate  MatrixSSL before 3.8.3 configured with RSA Cipher Suites allows remote attackers to obtain sensitive information via a Bleichenbacher variant attack.  Assigned (20160819)  None (candidate not yet proposed)    View
28423  CVE-2007-5066  Candidate  Unspecified vulnerability in Webmin before 1.370 on Windows allows remote authenticated users to execute arbitrary commands via a crafted URL.  Assigned (20070924)  None (candidate not yet proposed)    View

Page 602 of 20943, showing 5 records out of 104715 total, starting on record 3006, ending on 3010

Actions