CVE List

Id CVE No. Status Description Phase Votes Comments Actions
30218  CVE-2008-0101  Candidate  Format string vulnerability in the swDebugf function in DuneApp.cpp in White_Dune 0.29 beta791 and earlier allows remote attackers to execute arbitrary code via format string specifiers in a .WRL file.  Assigned (20080107)  None (candidate not yet proposed)    View
95754  CVE-2016-8934  Candidate  IBM WebSphere Application Server is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.  Assigned (20161025)  None (candidate not yet proposed)    View
30474  CVE-2008-0357  Candidate  Directory traversal vulnerability in pages/upload.php in Galaxyscripts Mini File Host 1.2.1 and earlier allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the language parameter.  Assigned (20080118)  None (candidate not yet proposed)    View
96010  CVE-2016-9190  Candidate  Pillow before 3.3.2 allows context-dependent attackers to execute arbitrary code by using the "crafted image file" approach, related to an "Insecure Sign Extension" issue affecting the ImagingNew in Storage.c component.  Assigned (20161104)  None (candidate not yet proposed)    View
30730  CVE-2008-0613  Candidate  Open redirect vulnerability in htdocs/user.php in XOOPS 2.0.18 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the xoops_redirect parameter.  Assigned (20080205)  None (candidate not yet proposed)    View

Page 1455 of 20943, showing 5 records out of 104715 total, starting on record 7271, ending on 7275

Actions