CVE List

Id CVE No. Status Description Phase Votes Comments Actions
23028  CVE-2006-6924  Candidate  bitweaver 1.3.1 and earlier allows remote attackers to obtain sensitive information via a sort_mode=-98 query string to (1) blogs/list_blogs.php, (2) fisheye/index.php, (3) wiki/orphan_pages.php, or (4) wiki/list_pages.php, which forces a SQL error. NOTE: the fisheye/list_galleries.php vector is already covered by CVE-2005-4380.  Assigned (20070112)  None (candidate not yet proposed)    View
88564  CVE-2016-1745  Candidate  IOFireWireFamily in Apple OS X before 10.11.4 allows local users to cause a denial of service (NULL pointer dereference) via unspecified vectors.  Assigned (20160113)  None (candidate not yet proposed)    View
23284  CVE-2006-7180  Candidate  ieee80211_output.c in MadWifi before 0.9.3 sends unencrypted packets before WPA authentication succeeds, which allows remote attackers to obtain sensitive information (related to network structure), and possibly cause a denial of sevice (disrupted authentication) and conduct spoofing attacks.  Assigned (20070329)  None (candidate not yet proposed)    View
88820  CVE-2016-2001  Candidate  HPE Universal CMDB Foundation 10.0, 10.01, 10.10, 10.11, and 10.20 allows remote attackers to obtain sensitive information or conduct URL redirection attacks via unspecified vectors.  Assigned (20160122)  None (candidate not yet proposed)    View
23540  CVE-2007-0183  Candidate  Cross-site scripting (XSS) vulnerability in /search in iPlanet Web Server 4.x allows remote attackers to inject arbitrary web script or HTML via the NS-max-records parameter. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.  Assigned (20070110)  None (candidate not yet proposed)    View

Page 19412 of 20943, showing 5 records out of 104715 total, starting on record 97056, ending on 97060

Actions