CVE List

Id CVE No. Status Description Phase Votes Comments Actions
86036  CVE-2015-8759  Candidate  Cross-site scripting (XSS) vulnerability in the typoLink function in TYPO3 6.2.x before 6.2.16 and 7.x before 7.6.1 allows remote authenticated editors to inject arbitrary web script or HTML via a link field.  Assigned (20160108)  None (candidate not yet proposed)    View
20756  CVE-2006-4652  Candidate  (1) Amazing Little Poll and (2) Amazing Little Picture Poll have a default password of "dsapoll", which allows remote attackers to create a new poll by entering default credentials via lp_admin.php.  Assigned (20060908)  None (candidate not yet proposed)    View
86292  CVE-2015-9015  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170328)  None (candidate not yet proposed)    View
21012  CVE-2006-4908  Candidate  OSU 3.11alpha and 3.10a allows remote attackers to obtain sensitive information via a URL containing an * (asterisk) wildcard, which displays all matching file and directory information.  Assigned (20060920)  None (candidate not yet proposed)    View
86548  CVE-2016-0252  Candidate  IBM Control Center 6.x before 6.0.0.1 iFix06 and Sterling Control Center 5.4.x before 5.4.2.1 iFix09 allow local users to decrypt the master key via unspecified vectors.  Assigned (20151208)  None (candidate not yet proposed)    View

Page 1621 of 20943, showing 5 records out of 104715 total, starting on record 8101, ending on 8105

Actions