CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
91375 | CVE-2016-4556 | Candidate | Double free vulnerability in Esi.cc in Squid 3.x before 3.5.18 and 4.x before 4.0.10 allows remote servers to cause a denial of service (crash) via a crafted Edge Side Includes (ESI) response. | Assigned (20160506) | None (candidate not yet proposed) | View | |
26095 | CVE-2007-2738 | Candidate | SQL injection vulnerability in glossaire-p-f.php in the Glossaire 1.7 and earlier module for Xoops allows remote attackers to execute arbitrary SQL commands via the sid parameter in an ImprDef action. | Assigned (20070517) | None (candidate not yet proposed) | View | |
91631 | CVE-2016-4812 | Candidate | Cross-site scripting (XSS) vulnerability in the Markdown on Save Improved plugin before 2.5.1 for WordPress allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | Assigned (20160517) | None (candidate not yet proposed) | View | |
26351 | CVE-2007-2994 | Candidate | SQL injection vulnerability in news.php in DGNews 2.1 allows remote attackers to execute arbitrary SQL commands via the newsid parameter in a fullnews action, a different vector than CVE-2007-0693. | Assigned (20070604) | None (candidate not yet proposed) | View | |
91887 | CVE-2016-5068 | Candidate | Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 do not require authentication for Embedded_Ace_Get_Task.cgi requests. | Assigned (20160526) | None (candidate not yet proposed) | View |
Page 19019 of 20943, showing 5 records out of 104715 total, starting on record 95091, ending on 95095