CVE List

Id CVE No. Status Description Phase Votes Comments Actions
91884  CVE-2016-5065  Candidate  Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 allow Embedded_Ace_Set_Task.cgi command injection.  Assigned (20160526)  None (candidate not yet proposed)    View
26604  CVE-2007-3247  Candidate  SQL injection vulnerability in VirtueMart before 1.0.11 allows remote attackers to execute arbitrary SQL commands via unspecified parameters, possibly related to improper input validation of the PATH_INFO (PHP_SELF) by virtuemart_parser.php.  Assigned (20070618)  None (candidate not yet proposed)    View
92140  CVE-2016-5321  Candidate  The DumpModeDecode function in libtiff 4.0.6 and earlier allows attackers to cause a denial of service (invalid read and crash) via a crafted tiff image.  Assigned (20160606)  None (candidate not yet proposed)    View
26860  CVE-2007-3503  Candidate  The Javadoc tool in Sun JDK 6 and JDK 5.0 Update 11 can generate HTML documentation pages that contain cross-site scripting (XSS) vulnerabilities, which allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20070629)  None (candidate not yet proposed)    View
92396  CVE-2016-5577  Candidate  Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware 8.4.0 and 8.5.1 through 8.5.3 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Outside In Filters, a different vulnerability than CVE-2016-5558, CVE-2016-5574, CVE-2016-5578, CVE-2016-5579, and CVE-2016-5588.  Assigned (20160616)  None (candidate not yet proposed)    View

Page 19010 of 20943, showing 5 records out of 104715 total, starting on record 95046, ending on 95050

Actions