CVE List

Id CVE No. Status Description Phase Votes Comments Actions
88293  CVE-2016-1474  Candidate  Cisco Prime Infrastructure 2.2(2) does not properly restrict use of IFRAME elements, which makes it easier for remote attackers to conduct clickjacking attacks and unspecified other attacks via a crafted web site, related to a "cross-frame scripting (XFS)" issue, aka Bug ID CSCuw65846, a different vulnerability than CVE-2015-6434.  Assigned (20160104)  None (candidate not yet proposed)    View
23013  CVE-2006-6909  Candidate  Stack-based buffer overflow in http.c in Karl Dahlke Edbrowse (aka Command line editor browser) 3.1.3 allows remote attackers to execute arbitrary code by operating an FTP server that sends directory listings with (1) long user names or (2) long group names.  Assigned (20070108)  None (candidate not yet proposed)    View
88549  CVE-2016-1730  Candidate  WebSheet in Apple iOS before 9.2.1 allows remote attackers to read or write to cookies by operating a crafted captive portal.  Assigned (20160113)  None (candidate not yet proposed)    View
23269  CVE-2006-7165  Candidate  IBM WebSphere Application Server (WAS) 5.0 through 5.1.1.0 allows remote attackers to obtain JSP source code and other sensitive information via certain "special URIs."  Assigned (20070320)  None (candidate not yet proposed)    View
88805  CVE-2016-1986  Candidate  HP Continuous Delivery Automation (CDA) 1.30 allows remote attackers to execute arbitrary commands via a crafted serialized Java object, related to the Apache Commons Collections library.  Assigned (20160122)  None (candidate not yet proposed)    View

Page 18856 of 20943, showing 5 records out of 104715 total, starting on record 94276, ending on 94280

Actions