CVE List

Id CVE No. Status Description Phase Votes Comments Actions
27409  CVE-2007-4052  Candidate  Cross-site scripting (XSS) vulnerability in utilities/login.asp in nukedit 4.9.7 and earlier allows remote attackers to inject arbitrary web script or HTML via the email parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.  Assigned (20070730)  None (candidate not yet proposed)    View
92945  CVE-2016-6125  Candidate  IBM Kenexa LMS on Cloud 13.1 and 13.2 - 13.2.4 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.  Assigned (20160629)  None (candidate not yet proposed)    View
27665  CVE-2007-4308  Candidate  The (1) aac_cfg_open and (2) aac_compat_ioctl functions in the SCSI layer ioctl path in aacraid in the Linux kernel before 2.6.23-rc2 do not check permissions for ioctls, which might allow local users to cause a denial of service or gain privileges.  Assigned (20070813)  None (candidate not yet proposed)    View
93201  CVE-2016-6381  Candidate  Cisco IOS 12.4 and 15.0 through 15.6 and IOS XE 3.1 through 3.18 and 16.1 allow remote attackers to cause a denial of service (memory consumption or device reload) via fragmented IKEv1 packets, aka Bug ID CSCuy47382.  Assigned (20160726)  None (candidate not yet proposed)    View
27921  CVE-2007-4564  Candidate  Cosminexus Manager in Cosminexus Application Server 07-00 and later might assign the wrong user"s group permissions to logical user server processes, which allows local users to gain privileges.  Assigned (20070827)  None (candidate not yet proposed)    View

Page 1385 of 20943, showing 5 records out of 104715 total, starting on record 6921, ending on 6925

Actions