CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
95731 | CVE-2016-8911 | Candidate | IBM Kenexa LMS on Cloud 13.1 and 13.2 - 13.2.4 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim"s click actions and possibly launch further attacks against the victim. | Assigned (20161025) | None (candidate not yet proposed) | View | |
30451 | CVE-2008-0334 | Candidate | Cross-site scripting (XSS) vulnerability in pm/language/spanish/preferences.php in PMachine Pro 2.4.1 allows remote attackers to inject arbitrary web script or HTML via the L_PREF_NAME[855] parameter. | Assigned (20080117) | None (candidate not yet proposed) | View | |
95987 | CVE-2016-9167 | Candidate | NDSD in Novell eDirectory before 9.0.2 did not calculate ACLs on LDAP objects across partition boundaries correctly, which could lead to a privilege escalation by modifying user attributes that would otherwise be filtered by an ACL. | Assigned (20161103) | None (candidate not yet proposed) | View | |
30707 | CVE-2008-0590 | Candidate | Buffer overflow in Ipswitch WS_FTP Server with SSH 6.1.0.0 allows remote authenticated users to cause a denial of service (crash) and possibly execute arbitrary code via a long opendir command. | Assigned (20080204) | None (candidate not yet proposed) | View | |
96243 | CVE-2016-9423 | Candidate | An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Heap-based buffer overflow in w3m allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTML page. | Assigned (20161118) | None (candidate not yet proposed) | View |
Page 19344 of 20943, showing 5 records out of 104715 total, starting on record 96716, ending on 96720