CVE List

Id CVE No. Status Description Phase Votes Comments Actions
29671  CVE-2007-6314  Candidate  BarracudaDrive Web Server before 3.8 allows remote attackers to read the source code for web scripts by appending a (1) + (plus), (2) . (dot), or (3) %80 and similar characters to the file name in the URL.  Assigned (20071211)  None (candidate not yet proposed)    View
95207  CVE-2016-8387  Candidate  An exploitable heap-based buffer overflow exists in Iceni Argus. When it attempts to convert a malformed PDF with an object encoded w/ multiple encoding types terminating with an LZW encoded type, an overflow may occur due to a lack of bounds checking by the LZW decoder. This can lead to code execution under the context of the account of the user running it.  Assigned (20160929)  None (candidate not yet proposed)    View
29927  CVE-2007-6570  Candidate  Cross-site scripting (XSS) vulnerability in the View URL Database functionality in Sun Java System Web Proxy Server 4.x before 4.0.6 and 3.x before 3.6 SP11 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka BugID 6566309.  Assigned (20071228)  None (candidate not yet proposed)    View
95463  CVE-2016-8643  Candidate  In Moodle 2.x and 3.x, non-admin site managers may accidentally edit admins via web services.  Assigned (20161012)  None (candidate not yet proposed)    View
30183  CVE-2008-0066  Candidate  Multiple buffer overflows in htmsr.dll in the HTML speed reader in Autonomy (formerly Verity) KeyView, as used by IBM Lotus Notes 7.0.2 and 7.0.3, allow remote attackers to execute arbitrary code via an HTML document with (1) "large chunks of data," or a long URL in the (2) BACKGROUND attribute of a BODY element or (3) SRC attribute of an IMG element.  Assigned (20080103)  None (candidate not yet proposed)    View

Page 18985 of 20943, showing 5 records out of 104715 total, starting on record 94921, ending on 94925

Actions