CVE List

Id CVE No. Status Description Phase Votes Comments Actions
93161  CVE-2016-6341  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20160726)  None (candidate not yet proposed)    View
27881  CVE-2007-4524  Candidate  PHP remote file inclusion vulnerability in adisplay.php in PhPress 0.2.0 allows remote attackers to execute arbitrary PHP code via a URL in the lang parameter.  Assigned (20070824)  None (candidate not yet proposed)    View
93417  CVE-2016-6597  Candidate  Sophos EAS Proxy before 6.2.0 for Sophos Mobile Control, when Lotus Traveler is enabled, allows remote attackers to access arbitrary web-resources from the backend mail system via a request for the resource, aka an Open Reverse Proxy vulnerability.  Assigned (20160804)  None (candidate not yet proposed)    View
28137  CVE-2007-4780  Candidate  Joomla! 1.5 before RC2 (aka Endeleo) allows remote attackers to obtain sensitive information (the full path) via unspecified vectors, probably involving direct requests to certain PHP scripts in tmpl/ directories.  Assigned (20070910)  None (candidate not yet proposed)    View
93673  CVE-2016-6853  Candidate  An issue was discovered in Open-Xchange OX Guard before 2.4.2-rev5. Script code and references to external websites can be injected to the names of PGP public keys. When requesting that key later on using a specific URL, such script code might get executed. In case of injecting external websites, users might get lured into a phishing scheme. Malicious script code can be executed within a user"s context. This can lead to session hijacking or triggering unwanted actions via the web interface (sending mail, deleting data etc.).  Assigned (20160818)  None (candidate not yet proposed)    View

Page 19172 of 20943, showing 5 records out of 104715 total, starting on record 95856, ending on 95860

Actions