CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
89834 | CVE-2016-3015 | Candidate | IBM Cognos Analytics 11.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM Reference #: 1998887. | Assigned (20160309) | None (candidate not yet proposed) | View | |
24554 | CVE-2007-1197 | Candidate | Multiple unspecified vulnerabilities in Epiware before 4.7.5 have unknown impact and attack vectors, possibly related to cross-site scripting (XSS) and other unspecified issues. | Assigned (20070302) | None (candidate not yet proposed) | View | |
90090 | CVE-2016-3271 | Candidate | The VBScript engine in Microsoft Edge allows remote attackers to obtain sensitive information from process memory via a crafted web site, aka "Scripting Engine Information Disclosure Vulnerability." | Assigned (20160315) | None (candidate not yet proposed) | View | |
24810 | CVE-2007-1453 | Candidate | Buffer underflow in the PHP_FILTER_TRIM_DEFAULT macro in the filtering extension (ext/filter) in PHP 5.2.0 allows context-dependent attackers to execute arbitrary code by calling filter_var with certain modes such as FILTER_VALIDATE_INT, which causes filter to write a null byte in whitespace that precedes the buffer. | Assigned (20070314) | None (candidate not yet proposed) | View | |
90346 | CVE-2016-3527 | Candidate | Unspecified vulnerability in the Oracle Demand Planning component in Oracle Supply Chain Products Suite 12.1 and 12.2 allows remote attackers to affect confidentiality and integrity via vectors related to ODPDA Servlet. | Assigned (20160317) | None (candidate not yet proposed) | View |
Page 18619 of 20943, showing 5 records out of 104715 total, starting on record 93091, ending on 93095