CVE List

Id CVE No. Status Description Phase Votes Comments Actions
24086  CVE-2007-0729  Candidate  Apple File Protocol (AFP) Client in Apple Mac OS X 10.3.9 through 10.4.9 does not properly clean the environment before executing commands, which allows local users to gain privileges by setting unspecified environment variables.  Assigned (20070205)  None (candidate not yet proposed)    View
89622  CVE-2016-2803  Candidate  Cross-site scripting (XSS) vulnerability in the dependency graphs in Bugzilla 2.16rc1 through 4.4.11, and 4.5.1 through 5.0.2 allows remote attackers to inject arbitrary web script or HTML.  Assigned (20160301)  None (candidate not yet proposed)    View
24342  CVE-2007-0985  Candidate  SQL injection vulnerability in nickpage.php in phpCC 4.2 beta and earlier allows remote attackers to execute arbitrary SQL commands via the npid parameter in a sign_gb action.  Assigned (20070216)  None (candidate not yet proposed)    View
89878  CVE-2016-3059  Candidate  IBM Tivoli Storage Manager for Databases: Data Protection for Microsoft SQL Server (aka IBM Spectrum Protect for Databases) 6.3 before 6.3.1.7 and 6.4 before 6.4.1.9 and Tivoli Storage FlashCopy Manager for Microsoft SQL Server (aka IBM Spectrum Protect Snapshot) 3.1 before 3.1.1.7 and 3.2 before 3.2.1.9 allow local users to discover a cleartext SQL Server password by reading the Task List in the MMC GUI.  Assigned (20160309)  None (candidate not yet proposed)    View
24598  CVE-2007-1241  Candidate  Cross-site scripting (XSS) vulnerability in setup.php in Audins Audiens 3.3 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.  Assigned (20070303)  None (candidate not yet proposed)    View

Page 1786 of 20943, showing 5 records out of 104715 total, starting on record 8926, ending on 8930

Actions