CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
91630 | CVE-2016-4811 | Candidate | The NTT Broadband Platform Japan Connected-free Wi-Fi application 1.15.1 and earlier for Android and 1.13.0 and earlier for iOS allows man-in-the-middle attackers to obtain API access via unspecified vectors. | Assigned (20160517) | None (candidate not yet proposed) | View | |
26350 | CVE-2007-2993 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in OmegaMw7.asp in OMEGA (aka Omegasoft) INterneSErvicesLosungen (INSEL) allow remote attackers to inject arbitrary web script or HTML via (1) user-created text fields; the (2) F05003, (3) F05005, and (4) F05015 fields; and other unspecified standard fields. | Assigned (20070604) | None (candidate not yet proposed) | View | |
91886 | CVE-2016-5067 | Candidate | Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 allow Hayes AT command injection. | Assigned (20160526) | None (candidate not yet proposed) | View | |
26606 | CVE-2007-3249 | Candidate | Cross-site scripting (XSS) vulnerability in mod_lettermansubscribe.php in the Letterman Subscriber (mod_letterman) before 1.2.5 module for Joomla! allows remote attackers to inject arbitrary web script or HTML via the Itemid parameter. | Assigned (20070618) | None (candidate not yet proposed) | View | |
92142 | CVE-2016-5323 | Candidate | The _TIFFFax3fillruns function in libtiff before 4.0.6 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted Tiff image. | Assigned (20160606) | None (candidate not yet proposed) | View |
Page 19556 of 20943, showing 5 records out of 104715 total, starting on record 97776, ending on 97780