CVE List

Id CVE No. Status Description Phase Votes Comments Actions
28142  CVE-2007-4785  Candidate  Sony Micro Vault Fingerprint Access Software, as distributed with Sony Micro Vault USM-F USB flash drives, installs a driver that hides a directory under %WINDIR%, which might allow remote attackers to bypass malware detection by placing files in this directory.  Assigned (20070910)  None (candidate not yet proposed)    View
93678  CVE-2016-6858  Candidate  Cross-site scripting (XSS) vulnerability in the Create Employee feature in Hybris Management Console (HMC) in SAP Hybris before 5.0.4.11, 5.1.0.x before 5.1.0.11, 5.1.1.x before 5.1.1.12, 5.2.0.x and 5.3.0.x before 5.3.0.10, 5.4.x before 5.4.0.9, 5.5.0.x before 5.5.0.9, 5.5.1.x before 5.5.1.10, 5.6.x before 5.6.0.8, and 5.7.x before 5.7.0.9 allows remote authenticated users to inject arbitrary web script or HTML via the Name field.  Assigned (20160818)  None (candidate not yet proposed)    View
28398  CVE-2007-5041  Candidate  G DATA InternetSecurity 2007 does not properly validate certain parameters to System Service Descriptor Table (SSDT) function handlers, which allows local users to cause a denial of service (crash) and possibly gain privileges via the (1) NtCreateKey and (2) NtOpenProcess kernel SSDT hooks.  Assigned (20070923)  None (candidate not yet proposed)    View
93934  CVE-2016-7114  Candidate  The EN100 Ethernet module before 4.29 for Siemens SIPROTEC 4 and SIPROTEC Compact devices allows remote attackers to bypass authentication and obtain administrative access via unspecified HTTP traffic during an authenticated session.  Assigned (20160830)  None (candidate not yet proposed)    View
28654  CVE-2007-5297  Candidate  Cross-site scripting (XSS) vulnerability in index.php in Minki 1.30 allows remote attackers to inject arbitrary web script or HTML via the page parameter.  Assigned (20071009)  None (candidate not yet proposed)    View

Page 19544 of 20943, showing 5 records out of 104715 total, starting on record 97716, ending on 97720

Actions