CVE List

Id CVE No. Status Description Phase Votes Comments Actions
92653  CVE-2016-5833  Candidate  Cross-site scripting (XSS) vulnerability in the column_title function in wp-admin/includes/class-wp-media-list-table.php in WordPress before 4.5.3 allows remote attackers to inject arbitrary web script or HTML via a crafted attachment name, a different vulnerability than CVE-2016-5834.  Assigned (20160623)  None (candidate not yet proposed)    View
27373  CVE-2007-4016  Candidate  Unspecified vulnerability in the client components in Citrix Access Gateway Standard Edition before 4.5.5 and Advanced Edition before 4.5 HF1 allows attackers to execute arbitrary code via unspecified vectors.  Assigned (20070725)  None (candidate not yet proposed)    View
92909  CVE-2016-6089  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20160629)  None (candidate not yet proposed)    View
27629  CVE-2007-4272  Candidate  Multiple vulnerabilities in IBM DB2 UDB 8 before Fixpak 15 and 9.1 before Fixpak 3 allow local users to create arbitrary files via (1) unspecified vectors where an attacker"s umask is honored, (2) /etc/ld.so.preload, (3) certain "cron data file locations", and other unspecified vectors possibly involving the (4) OSSEMEMDBG or (5) TRC_LOG_FILE environment variable in db2licd (db2licm).  Assigned (20070809)  None (candidate not yet proposed)    View
93165  CVE-2016-6345  Candidate  RESTEasy allows remote authenticated users to obtain sensitive information by leveraging "insufficient use of random values" in async jobs.  Assigned (20160726)  None (candidate not yet proposed)    View

Page 19462 of 20943, showing 5 records out of 104715 total, starting on record 97306, ending on 97310

Actions