CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
29671 | CVE-2007-6314 | Candidate | BarracudaDrive Web Server before 3.8 allows remote attackers to read the source code for web scripts by appending a (1) + (plus), (2) . (dot), or (3) %80 and similar characters to the file name in the URL. | Assigned (20071211) | None (candidate not yet proposed) | View | |
95207 | CVE-2016-8387 | Candidate | An exploitable heap-based buffer overflow exists in Iceni Argus. When it attempts to convert a malformed PDF with an object encoded w/ multiple encoding types terminating with an LZW encoded type, an overflow may occur due to a lack of bounds checking by the LZW decoder. This can lead to code execution under the context of the account of the user running it. | Assigned (20160929) | None (candidate not yet proposed) | View | |
29927 | CVE-2007-6570 | Candidate | Cross-site scripting (XSS) vulnerability in the View URL Database functionality in Sun Java System Web Proxy Server 4.x before 4.0.6 and 3.x before 3.6 SP11 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka BugID 6566309. | Assigned (20071228) | None (candidate not yet proposed) | View | |
95463 | CVE-2016-8643 | Candidate | In Moodle 2.x and 3.x, non-admin site managers may accidentally edit admins via web services. | Assigned (20161012) | None (candidate not yet proposed) | View | |
30183 | CVE-2008-0066 | Candidate | Multiple buffer overflows in htmsr.dll in the HTML speed reader in Autonomy (formerly Verity) KeyView, as used by IBM Lotus Notes 7.0.2 and 7.0.3, allow remote attackers to execute arbitrary code via an HTML document with (1) "large chunks of data," or a long URL in the (2) BACKGROUND attribute of a BODY element or (3) SRC attribute of an IMG element. | Assigned (20080103) | None (candidate not yet proposed) | View |
Page 18985 of 20943, showing 5 records out of 104715 total, starting on record 94921, ending on 94925