CVE List

Id CVE No. Status Description Phase Votes Comments Actions
24555  CVE-2007-1198  Candidate  Cross-site scripting (XSS) vulnerability in TaskFreak! before 0.5.7 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, possibly a variant of CVE-2007-0982.  Assigned (20070302)  None (candidate not yet proposed)    View
90091  CVE-2016-3272  Candidate  The kernel in Microsoft Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold and 1511 mishandles page-fault system calls, which allows local users to obtain sensitive information from an arbitrary process via a crafted application, aka "Windows Kernel Information Disclosure Vulnerability."  Assigned (20160315)  None (candidate not yet proposed)    View
24811  CVE-2007-1454  Candidate  ext/filter in PHP 5.2.0, when FILTER_SANITIZE_STRING is used with the FILTER_FLAG_STRIP_LOW flag, does not properly strip HTML tags, which allows remote attackers to conduct cross-site scripting (XSS) attacks via HTML with a "<" character followed by certain whitespace characters, which passes one filter but is collapsed into a valid tag, as demonstrated using %0b.  Assigned (20070314)  None (candidate not yet proposed)    View
90347  CVE-2016-3528  Candidate  Unspecified vulnerability in the Oracle Internet Expenses component in Oracle E-Business Suite 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, and 12.2.5 allows remote attackers to affect availability via vectors related to Expenses Admin Utilities.  Assigned (20160317)  None (candidate not yet proposed)    View
25067  CVE-2007-1710  Candidate  The readfile function in PHP 4.4.4, 5.1.6, and 5.2.1 allows context-dependent attackers to bypass safe_mode restrictions and read arbitrary files by referring to local files with a certain URL syntax instead of a pathname syntax, as demonstrated by a filename preceded a "php://../../" sequence.  Assigned (20070326)  None (candidate not yet proposed)    View

Page 19322 of 20943, showing 5 records out of 104715 total, starting on record 96606, ending on 96610

Actions