CVE List

Id CVE No. Status Description Phase Votes Comments Actions
36610  CVE-2008-6493  Candidate  Easy Content Management Publishing stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for Database/News.mdb.  Assigned (20090319)  None (candidate not yet proposed)    View
102146  CVE-2017-5326  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170109)  None (candidate not yet proposed)    View
36866  CVE-2008-6749  Candidate  Multiple SQL injection vulnerabilities in admin/usercheck.php in FlexPHPDirectory 0.0.1, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) checkuser and (2) checkpass parameters.  Assigned (20090424)  None (candidate not yet proposed)    View
102402  CVE-2017-5582  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170125)  None (candidate not yet proposed)    View
37122  CVE-2008-7005  Candidate  include/modules/top/1-random_quote.php in Minb Is Not a Blog (minb) 0.1.0 allows remote attackers to execute arbitrary PHP code via the quotes_to_edit parameter. NOTE: this issue has been reported as an unrestricted file upload by some sources, but that is a potential consequence of code execution.  Assigned (20090818)  None (candidate not yet proposed)    View

Page 826 of 20943, showing 5 records out of 104715 total, starting on record 4126, ending on 4130

Actions