CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
30472 | CVE-2008-0355 | Candidate | SQL injection vulnerability in index.php in the forum module in PHPEcho CMS, probably 2.0-rc3 and earlier, allows remote attackers to execute arbitrary SQL commands via the id parameter in a section action, a different vector than CVE-2007-2866. | Assigned (20080118) | None (candidate not yet proposed) | View | |
96008 | CVE-2016-9188 | Candidate | Cross-site scripting (XSS) vulnerabilities in Moodle CMS on or before 3.1.2 allow remote attackers to inject arbitrary web script or HTML via the s_additionalhtmlhead, s_additionalhtmltopofbody, and s_additionalhtmlfooter parameters. | Assigned (20161104) | None (candidate not yet proposed) | View | |
30728 | CVE-2008-0611 | Candidate | SQL injection vulnerability in rmgs/images.php in the RMSOFT Gallery System 2.0 module for XOOPS allows remote attackers to execute arbitrary SQL commands via the id parameter. | Assigned (20080205) | None (candidate not yet proposed) | View | |
96264 | CVE-2016-9444 | Candidate | named in ISC BIND 9.x before 9.9.9-P5, 9.10.x before 9.10.4-P5, and 9.11.x before 9.11.0-P2 allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a crafted DS resource record in an answer. | Assigned (20161118) | None (candidate not yet proposed) | View | |
30984 | CVE-2008-0867 | Candidate | Cross-site scripting (XSS) vulnerability in portal/server.pt in BEA AquaLogic Interaction 6.1 through MP1 and Plumtree Foundation 6.0 through SP1 allows remote attackers to inject arbitrary web script or HTML via the name parameter. | Assigned (20080220) | None (candidate not yet proposed) | View |
Page 698 of 20943, showing 5 records out of 104715 total, starting on record 3486, ending on 3490