CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
23038 | CVE-2006-6934 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in Portix-PHP 0.4.2 allow remote attackers to inject arbitrary web script or HTML via the (1) titre or (2) auteur field in a forum post. | Assigned (20070116) | None (candidate not yet proposed) | View | |
88574 | CVE-2016-1755 | Candidate | The kernel in Apple iOS before 9.3, OS X before 10.11.4, tvOS before 9.2, and watchOS before 2.2 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app, a different vulnerability than CVE-2016-1754. | Assigned (20160113) | None (candidate not yet proposed) | View | |
23294 | CVE-2006-7190 | Candidate | Cross-site scripting (XSS) vulnerability in cgi-bin/user-lib/topics.pl in web-app.net WebAPP before 20060515 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors in the viewnews function, related to use of doubbctopic instead of doubbc. | Assigned (20070402) | None (candidate not yet proposed) | View | |
88830 | CVE-2016-2011 | Candidate | Cross-site scripting (XSS) vulnerability in HPE Network Node Manager i (NNMi) 9.20, 9.23, 9.24, 9.25, 10.00, and 10.01 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2016-2010. | Assigned (20160122) | None (candidate not yet proposed) | View | |
23550 | CVE-2007-0193 | Candidate | FON La Fonera routers do not properly limit DNS service access by unauthenticated clients, which allows remote attackers to tunnel traffic via DNS requests for hosts that should not be accessible before authentication. | Assigned (20070110) | None (candidate not yet proposed) | View |
Page 19661 of 20943, showing 5 records out of 104715 total, starting on record 98301, ending on 98305