CVE List

Id CVE No. Status Description Phase Votes Comments Actions
93931  CVE-2016-7111  Candidate  MantisBT before 1.3.1 and 2.x before 2.0.0-beta.2 uses a weak Content Security Policy when using the Gravatar plugin, which allows remote attackers to conduct cross-site scripting (XSS) attacks via unspecified vectors.  Assigned (20160829)  None (candidate not yet proposed)    View
93932  CVE-2016-7112  Candidate  The EN100 Ethernet module before 4.29 for Siemens SIPROTEC 4 and SIPROTEC Compact devices allows remote attackers to bypass authentication and obtain administrative access via unspecified HTTP traffic.  Assigned (20160830)  None (candidate not yet proposed)    View
93933  CVE-2016-7113  Candidate  The EN100 Ethernet module before 4.29 for Siemens SIPROTEC 4 and SIPROTEC Compact devices allows remote attackers to cause a denial of service (defect-mode transition) via crafted HTTP packets.  Assigned (20160830)  None (candidate not yet proposed)    View
93934  CVE-2016-7114  Candidate  The EN100 Ethernet module before 4.29 for Siemens SIPROTEC 4 and SIPROTEC Compact devices allows remote attackers to bypass authentication and obtain administrative access via unspecified HTTP traffic during an authenticated session.  Assigned (20160830)  None (candidate not yet proposed)    View
93935  CVE-2016-7115  Candidate  Buffer overflow in the handle_packet function in mactelnet.c in the client in MAC-Telnet 0.4.3 and earlier allows remote TELNET servers to execute arbitrary code via a long string in an MT_CPTYPE_PASSSALT control packet.  Assigned (20160830)  None (candidate not yet proposed)    View

Page 18787 of 20943, showing 5 records out of 104715 total, starting on record 93931, ending on 93935

Actions