CVE List

Id CVE No. Status Description Phase Votes Comments Actions
93456  CVE-2016-6636  Candidate  The OAuth authorization implementation in Pivotal Cloud Foundry (PCF) before 242; UAA 2.x before 2.7.4.7, 3.x before 3.3.0.5, and 3.4.x before 3.4.4; UAA BOSH before 11.5 and 12.x before 12.5; Elastic Runtime before 1.6.40, 1.7.x before 1.7.21, and 1.8.x before 1.8.1; and Ops Manager 1.7.x before 1.7.13 and 1.8.x before 1.8.1 mishandles redirect_uri subdomains, which allows remote attackers to obtain implicit access tokens via a modified subdomain.  Assigned (20160810)  None (candidate not yet proposed)    View
28176  CVE-2007-4819  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in Txx CMS 0.2 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20070911)  None (candidate not yet proposed)    View
93712  CVE-2016-6892  Candidate  The x509FreeExtensions function in MatrixSSL before 3.8.6 allows remote attackers to cause a denial of service (free of unallocated memory) via a crafted X.509 certificate.  Assigned (20160819)  None (candidate not yet proposed)    View
28432  CVE-2007-5075  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20070924)  None (candidate not yet proposed)    View
93968  CVE-2016-7148  Candidate  MoinMoin 1.9.8 allows remote attackers to conduct "JavaScript injection" attacks by using the "page creation" approach, related to a "Cross Site Scripting (XSS)" issue affecting the action=AttachFile (via page name) component.  Assigned (20160905)  None (candidate not yet proposed)    View

Page 1309 of 20943, showing 5 records out of 104715 total, starting on record 6541, ending on 6545

Actions