CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
93454 | CVE-2016-6634 | Candidate | Cross-site scripting (XSS) vulnerability in the network settings page in WordPress before 4.5 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | Assigned (20160807) | None (candidate not yet proposed) | View | |
28174 | CVE-2007-4817 | Candidate | Unrestricted file upload vulnerability in the Restaurante (com_restaurante) component for Joomla! allows remote attackers to upload and execute arbitrary PHP code via an upload action specifying a filename with a double extension such as .php.jpg, which creates an accessible file under img_original/. | Assigned (20070911) | None (candidate not yet proposed) | View | |
93710 | CVE-2016-6890 | Candidate | Heap-based buffer overflow in MatrixSSL before 3.8.6 allows remote attackers to execute arbitrary code via a crafted Subject Alt Name in an X.509 certificate. | Assigned (20160819) | None (candidate not yet proposed) | View | |
28430 | CVE-2007-5073 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20070924) | None (candidate not yet proposed) | View | |
93966 | CVE-2016-7146 | Candidate | MoinMoin 1.9.8 allows remote attackers to conduct "JavaScript injection" attacks by using the "page creation or crafted URL" approach, related to a "Cross Site Scripting (XSS)" issue affecting the action=fckdialog&dialog=attachment (via page name) component. | Assigned (20160905) | None (candidate not yet proposed) | View |
Page 1171 of 20943, showing 5 records out of 104715 total, starting on record 5851, ending on 5855