CVE List

Id CVE No. Status Description Phase Votes Comments Actions
91630  CVE-2016-4811  Candidate  The NTT Broadband Platform Japan Connected-free Wi-Fi application 1.15.1 and earlier for Android and 1.13.0 and earlier for iOS allows man-in-the-middle attackers to obtain API access via unspecified vectors.  Assigned (20160517)  None (candidate not yet proposed)    View
26350  CVE-2007-2993  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in OmegaMw7.asp in OMEGA (aka Omegasoft) INterneSErvicesLosungen (INSEL) allow remote attackers to inject arbitrary web script or HTML via (1) user-created text fields; the (2) F05003, (3) F05005, and (4) F05015 fields; and other unspecified standard fields.  Assigned (20070604)  None (candidate not yet proposed)    View
91886  CVE-2016-5067  Candidate  Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 allow Hayes AT command injection.  Assigned (20160526)  None (candidate not yet proposed)    View
26606  CVE-2007-3249  Candidate  Cross-site scripting (XSS) vulnerability in mod_lettermansubscribe.php in the Letterman Subscriber (mod_letterman) before 1.2.5 module for Joomla! allows remote attackers to inject arbitrary web script or HTML via the Itemid parameter.  Assigned (20070618)  None (candidate not yet proposed)    View
92142  CVE-2016-5323  Candidate  The _TIFFFax3fillruns function in libtiff before 4.0.6 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted Tiff image.  Assigned (20160606)  None (candidate not yet proposed)    View

Page 19556 of 20943, showing 5 records out of 104715 total, starting on record 97776, ending on 97780

Actions