CVE List

Id CVE No. Status Description Phase Votes Comments Actions
85524  CVE-2015-8247  Candidate  Cross-site scripting (XSS) vulnerability in synnefoclient in Synnefo Internet Management Software (IMS) 2015 allows remote attackers to inject arbitrary web script or HTML via the plan_name parameter to packagehistory/listusagesdata.  Assigned (20151119)  None (candidate not yet proposed)    View
20244  CVE-2006-4140  Candidate  Directory traversal vulnerability in IPCheck Server Monitor before 5.3.3.639/640 allows remote attackers to read arbitrary files via modified .. (dot dot) sequences in the URL, including (1) "..%2f" (encoded "/" slash), "..../" (multiple dot), and "..%255c../" (double-encoded "" backslash).  Assigned (20060814)  None (candidate not yet proposed)    View
85780  CVE-2015-8503  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20151208)  None (candidate not yet proposed)    View
20500  CVE-2006-4396  Candidate  The Apple Type Services (ATS) server in Mac OS X 10.4.8 and earlier does not securely create log files, which allows local users to create and modify arbitrary files via unspecified vectors, possibly relating to a symlink attack.  Assigned (20060828)  None (candidate not yet proposed)    View
86036  CVE-2015-8759  Candidate  Cross-site scripting (XSS) vulnerability in the typoLink function in TYPO3 6.2.x before 6.2.16 and 7.x before 7.6.1 allows remote authenticated editors to inject arbitrary web script or HTML via a link field.  Assigned (20160108)  None (candidate not yet proposed)    View

Page 1642 of 20943, showing 5 records out of 104715 total, starting on record 8206, ending on 8210

Actions