CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
96291 | CVE-2016-9471 | Candidate | Revive Adserver before 3.2.5 and 4.0.0 suffers from Special Element Injection. Usernames weren"t properly sanitised when creating users on a Revive Adserver instance. Especially, control characters were not filtered, allowing apparently identical usernames to co-exist in the system, due to the fact that such characters are normally ignored when an HTML page is displayed in a browser. The issue could have therefore been exploited for user spoofing, although elevated privileges are required to create users within Revive Adserver. | Assigned (20161119) | None (candidate not yet proposed) | View | |
96292 | CVE-2016-9472 | Candidate | Revive Adserver before 3.2.5 and 4.0.0 suffers from Reflected XSS. The Revive Adserver web installer scripts were vulnerable to a reflected XSS attack via the dbHost, dbUser, and possibly other parameters. It has to be noted that the window for such attack vectors to be possible is extremely narrow and it is very unlikely that such an attack could be actually effective. | Assigned (20161119) | None (candidate not yet proposed) | View | |
96293 | CVE-2016-9473 | Candidate | Brave Browser iOS before 1.2.18 and Brave Browser Android 1.9.56 and earlier suffer from Full Address Bar Spoofing, allowing attackers to trick a victim by displaying a malicious page for legitimate domain names. | Assigned (20161119) | None (candidate not yet proposed) | View | |
96294 | CVE-2016-9474 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20161119) | None (candidate not yet proposed) | View | |
96295 | CVE-2016-9475 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20161119) | None (candidate not yet proposed) | View |
Page 19259 of 20943, showing 5 records out of 104715 total, starting on record 96291, ending on 96295