CVE List

Id CVE No. Status Description Phase Votes Comments Actions
28403  CVE-2007-5046  Candidate  Cross-site scripting (XSS) vulnerability in the Webmail interface for IceWarp Merak Mail Server before 9.0.0 allows remote attackers to inject arbitrary JavaScript via a javascript: URI in an attribute of an element in an email message body, as demonstrated by the onload attribute in a BODY element.  Assigned (20070923)  None (candidate not yet proposed)    View
93939  CVE-2016-7119  Candidate  Cross-site scripting (XSS) vulnerability in the user-profile biography section in DotNetNuke (DNN) before 8.0.1 allows remote authenticated users to inject arbitrary web script or HTML via a crafted onclick attribute in an IMG element.  Assigned (20160831)  None (candidate not yet proposed)    View
28659  CVE-2007-5302  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in HP System Management Homepage (SMH) in HP-UX B.11.11, B.11.23, and B.11.31, and SMH before 2.1.10 for Linux and Windows, allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20071009)  None (candidate not yet proposed)    View
94195  CVE-2016-7375  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20160909)  None (candidate not yet proposed)    View
28915  CVE-2007-5558  Candidate  Integer overflow in the LG Mobile handset allows remote attackers to cause a denial of service (reboot) via a crafted HTTP packet. NOTE: as of 20071016, the only disclosure is a vague pre-advisory with no actionable information. However, since it is from a well-known researcher, it is being assigned a CVE identifier for tracking purposes.  Assigned (20071018)  None (candidate not yet proposed)    View

Page 19341 of 20943, showing 5 records out of 104715 total, starting on record 96701, ending on 96705

Actions