CVE List

Id CVE No. Status Description Phase Votes Comments Actions
30472  CVE-2008-0355  Candidate  SQL injection vulnerability in index.php in the forum module in PHPEcho CMS, probably 2.0-rc3 and earlier, allows remote attackers to execute arbitrary SQL commands via the id parameter in a section action, a different vector than CVE-2007-2866.  Assigned (20080118)  None (candidate not yet proposed)    View
96008  CVE-2016-9188  Candidate  Cross-site scripting (XSS) vulnerabilities in Moodle CMS on or before 3.1.2 allow remote attackers to inject arbitrary web script or HTML via the s_additionalhtmlhead, s_additionalhtmltopofbody, and s_additionalhtmlfooter parameters.  Assigned (20161104)  None (candidate not yet proposed)    View
30728  CVE-2008-0611  Candidate  SQL injection vulnerability in rmgs/images.php in the RMSOFT Gallery System 2.0 module for XOOPS allows remote attackers to execute arbitrary SQL commands via the id parameter.  Assigned (20080205)  None (candidate not yet proposed)    View
96264  CVE-2016-9444  Candidate  named in ISC BIND 9.x before 9.9.9-P5, 9.10.x before 9.10.4-P5, and 9.11.x before 9.11.0-P2 allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a crafted DS resource record in an answer.  Assigned (20161118)  None (candidate not yet proposed)    View
30984  CVE-2008-0867  Candidate  Cross-site scripting (XSS) vulnerability in portal/server.pt in BEA AquaLogic Interaction 6.1 through MP1 and Plumtree Foundation 6.0 through SP1 allows remote attackers to inject arbitrary web script or HTML via the name parameter.  Assigned (20080220)  None (candidate not yet proposed)    View

Page 698 of 20943, showing 5 records out of 104715 total, starting on record 3486, ending on 3490

Actions