CVE List

Id CVE No. Status Description Phase Votes Comments Actions
95731  CVE-2016-8911  Candidate  IBM Kenexa LMS on Cloud 13.1 and 13.2 - 13.2.4 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim"s click actions and possibly launch further attacks against the victim.  Assigned (20161025)  None (candidate not yet proposed)    View
30451  CVE-2008-0334  Candidate  Cross-site scripting (XSS) vulnerability in pm/language/spanish/preferences.php in PMachine Pro 2.4.1 allows remote attackers to inject arbitrary web script or HTML via the L_PREF_NAME[855] parameter.  Assigned (20080117)  None (candidate not yet proposed)    View
95987  CVE-2016-9167  Candidate  NDSD in Novell eDirectory before 9.0.2 did not calculate ACLs on LDAP objects across partition boundaries correctly, which could lead to a privilege escalation by modifying user attributes that would otherwise be filtered by an ACL.  Assigned (20161103)  None (candidate not yet proposed)    View
30707  CVE-2008-0590  Candidate  Buffer overflow in Ipswitch WS_FTP Server with SSH 6.1.0.0 allows remote authenticated users to cause a denial of service (crash) and possibly execute arbitrary code via a long opendir command.  Assigned (20080204)  None (candidate not yet proposed)    View
96243  CVE-2016-9423  Candidate  An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Heap-based buffer overflow in w3m allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTML page.  Assigned (20161118)  None (candidate not yet proposed)    View

Page 19344 of 20943, showing 5 records out of 104715 total, starting on record 96716, ending on 96720

Actions