CVE List

Id CVE No. Status Description Phase Votes Comments Actions
30210  CVE-2008-0093  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in newticket.php in eTicket 1.5.5.2, and 1.5.6 RC2 and RC3, allow remote attackers to inject arbitrary web script or HTML via the (1) Name and (2) Subject parameters.  Assigned (20080107)  None (candidate not yet proposed)    View
95746  CVE-2016-8926  Candidate  IBM Tivoli Application Dependency Discovery Manager 7.2.2 and 7.3 could allow a remote attacker to read system files or data that is restricted to authorized users. IBM X-Force ID: 118539.  Assigned (20161025)  None (candidate not yet proposed)    View
30466  CVE-2008-0349  Candidate  Unspecified vulnerability in the PeopleTools component in Oracle PeopleSoft Enterprise and JD Edwards EnterpriseOne 8.48.15 and 8.49.07 has unknown impact and remote attack vectors, aka PSE02.  Assigned (20080117)  None (candidate not yet proposed)    View
96002  CVE-2016-9182  Candidate  Exponent CMS 2.4 uses PHP reflection to call a method of a controller class, and then uses the method name to check user permission. But, the method name in PHP reflection is case insensitive, and Exponent CMS permits undefined actions to execute by default, so an attacker can use a capitalized method name to bypass the permission check, e.g., controller=expHTMLEditor&action=preview&editor=ckeditor and controller=expHTMLEditor&action=Preview&editor=ckeditor. An anonymous user will be rejected for the former but can access the latter.  Assigned (20161104)  None (candidate not yet proposed)    View
30722  CVE-2008-0605  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in AstroSoft HelpDesk before 1.95.228 allow remote attackers to inject arbitrary web script or HTML via the (1) txtSearch parameter to operator/article/article_search_results.asp and the (2) Attach_Id parameter to operator/article/article_attachment.asp. NOTE: for vector 2, the XSS occurs in a forced SQL error message.  Assigned (20080205)  None (candidate not yet proposed)    View

Page 816 of 20943, showing 5 records out of 104715 total, starting on record 4076, ending on 4080

Actions