CVE List

Id CVE No. Status Description Phase Votes Comments Actions
89876  CVE-2016-3057  Candidate  Cross-site scripting (XSS) vulnerability in IBM Sterling B2B Integrator 5.2 before 5020500_14 and 5.2 06 before 5020602_1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20160309)  None (candidate not yet proposed)    View
24596  CVE-2007-1239  Candidate  Microsoft Excel 2003 does not properly parse .XLS files, which allows remote attackers to cause a denial of service (application crash) via a file with a (1) corrupted XML format or a (2) corrupted XLS format, which triggers a NULL pointer dereference.  Assigned (20070303)  None (candidate not yet proposed)    View
90132  CVE-2016-3313  Candidate  Microsoft Office 2007 SP3, 2010 SP2, 2013 SP1, 2013 RT SP1, and 2016, Word 2016 for Mac, and Word Viewer allow remote attackers to execute arbitrary code via a crafted file, aka "Microsoft Office Memory Corruption Vulnerability."  Assigned (20160315)  None (candidate not yet proposed)    View
24852  CVE-2007-1495  Candidate  The DeviceSymEvent driver in Symantec Norton Personal Firewall 2006 9.1.1.7, and possibly other products using symevent.sys 12.0.0.20, allows local users to cause a denial of service (system crash) via invalid data, as demonstrated by calling DeviceIoControl to send the data, a reintroduction of CVE-2006-4855.  Assigned (20070316)  None (candidate not yet proposed)    View
90388  CVE-2016-3569  Candidate  Unspecified vulnerability in the Primavera P6 Enterprise Project Portfolio Management component in Oracle Primavera Products Suite 8.3, 8.4, 15.1, 15.2, and 16.1 allows remote attackers to affect confidentiality and integrity via vectors related to Web access, a different vulnerability than CVE-2016-3566, CVE-2016-3568, CVE-2016-3570, CVE-2016-3571, and CVE-2016-3573.  Assigned (20160317)  None (candidate not yet proposed)    View

Page 1611 of 20943, showing 5 records out of 104715 total, starting on record 8051, ending on 8055

Actions