CVE List

Id CVE No. Status Description Phase Votes Comments Actions
29156  CVE-2007-5799  Candidate  Multiple cross-site request forgery (CSRF) vulnerabilities in uddigui/navigateTree.do in the UDDI user console in IBM WebSphere Application Server (WAS) before 6.1.0 Fix Pack 13 (6.1.0.13) allow remote attackers to perform some actions as WAS UDDI users via the (1) keyField, (2) nameField, (3) valueField, and (4) frameReturn parameters.  Assigned (20071102)  None (candidate not yet proposed)    View
94692  CVE-2016-7872  Candidate  Adobe Flash Player versions 23.0.0.207 and earlier, 11.2.202.644 and earlier have an exploitable use after free vulnerability in the MovieClip class related to objects at multiple presentation levels. Successful exploitation could lead to arbitrary code execution.  Assigned (20160909)  None (candidate not yet proposed)    View
29412  CVE-2007-6055  Candidate  Cross-site scripting (XSS) vulnerability in c/portal/login in Liferay Portal 4.1.0 and 4.1.1 allows remote attackers to inject arbitrary web script or HTML via the login parameter. NOTE: this issue reportedly exists because of a regression that followed a fix at an unspecified earlier date.  Assigned (20071120)  None (candidate not yet proposed)    View
94948  CVE-2016-8128  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20160909)  None (candidate not yet proposed)    View
29668  CVE-2007-6311  Candidate  SQL injection vulnerability in (1) index.php, and possibly (2) admin/index.php, in Falt4Extreme RC4 10.9.2007 allows remote attackers to execute arbitrary SQL commands via the nav_ID parameter.  Assigned (20071211)  None (candidate not yet proposed)    View

Page 18759 of 20943, showing 5 records out of 104715 total, starting on record 93791, ending on 93795

Actions