CVE List

Id CVE No. Status Description Phase Votes Comments Actions
91375  CVE-2016-4556  Candidate  Double free vulnerability in Esi.cc in Squid 3.x before 3.5.18 and 4.x before 4.0.10 allows remote servers to cause a denial of service (crash) via a crafted Edge Side Includes (ESI) response.  Assigned (20160506)  None (candidate not yet proposed)    View
26095  CVE-2007-2738  Candidate  SQL injection vulnerability in glossaire-p-f.php in the Glossaire 1.7 and earlier module for Xoops allows remote attackers to execute arbitrary SQL commands via the sid parameter in an ImprDef action.  Assigned (20070517)  None (candidate not yet proposed)    View
91631  CVE-2016-4812  Candidate  Cross-site scripting (XSS) vulnerability in the Markdown on Save Improved plugin before 2.5.1 for WordPress allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20160517)  None (candidate not yet proposed)    View
26351  CVE-2007-2994  Candidate  SQL injection vulnerability in news.php in DGNews 2.1 allows remote attackers to execute arbitrary SQL commands via the newsid parameter in a fullnews action, a different vector than CVE-2007-0693.  Assigned (20070604)  None (candidate not yet proposed)    View
91887  CVE-2016-5068  Candidate  Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 do not require authentication for Embedded_Ace_Get_Task.cgi requests.  Assigned (20160526)  None (candidate not yet proposed)    View

Page 19019 of 20943, showing 5 records out of 104715 total, starting on record 95091, ending on 95095

Actions