CVE List

Id CVE No. Status Description Phase Votes Comments Actions
26114  CVE-2007-2757  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in Redoable 1.2 allow remote attackers to inject arbitrary web script or HTML via the s parameter to (1) wp-content/themes/redoable/searchloop.php or (2) wp-content/themes/redoable/header.php.  Assigned (20070518)  None (candidate not yet proposed)    View
91650  CVE-2016-4831  Candidate  Untrusted search path vulnerability in LINE and LINE Installer 4.7.0 and earlier on Windows allows local users to gain privileges via a Trojan horse DLL in an unspecified directory.  Assigned (20160517)  None (candidate not yet proposed)    View
26370  CVE-2007-3013  Candidate  SQL injection vulnerability in activeWeb contentserver before 5.6.2964 allows remote authenticated users with edit permission to execute arbitrary SQL commands via the id parameter to admin/picture/picture_real_edit.asp, and probably other unspecified vectors.  Assigned (20070604)  None (candidate not yet proposed)    View
91906  CVE-2016-5087  Candidate  Alertus Desktop Notification before 2.9.31.1710 on OS X uses weak permissions for configuration files and unspecified other files, which allows local users to suppress emergency notifications or change content via standard filesystem operations.  Assigned (20160526)  None (candidate not yet proposed)    View
26626  CVE-2007-3269  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in Papoo Light 3.6 before 20070611 allow remote attackers to inject arbitrary web script or HTML via (1) the URI in a GET request or (2) the Title field of a visitor comment, and (3) allow remote authenticated users to inject arbitrary web script or HTML via a message to another user. NOTE: vector (2) might overlap CVE-2006-3571.1.  Assigned (20070619)  None (candidate not yet proposed)    View

Page 199 of 20943, showing 5 records out of 104715 total, starting on record 991, ending on 995

Actions