CVE List

Id CVE No. Status Description Phase Votes Comments Actions
29939  CVE-2007-6582  Candidate  Directory traversal vulnerability in index.php in mBlog 1.2 allows remote attackers to read arbitrary files via a .. (dot dot) in the page parameter in a page mode action.  Assigned (20071228)  None (candidate not yet proposed)    View
95475  CVE-2016-8655  Candidate  Race condition in net/packet/af_packet.c in the Linux kernel through 4.8.12 allows local users to gain privileges or cause a denial of service (use-after-free) by leveraging the CAP_NET_RAW capability to change a socket version, related to the packet_set_ring and packet_setsockopt functions.  Assigned (20161012)  None (candidate not yet proposed)    View
30195  CVE-2008-0078  Candidate  Unspecified vulnerability in an ActiveX control (dxtmsft.dll) in Microsoft Internet Explorer 5.01, 6 SP1 and SP2, and 7 allows remote attackers to execute arbitrary code via a crafted image, aka "Argument Handling Memory Corruption Vulnerability."  Assigned (20080103)  None (candidate not yet proposed)    View
95731  CVE-2016-8911  Candidate  IBM Kenexa LMS on Cloud 13.1 and 13.2 - 13.2.4 could allow a remote attacker to hijack the clicking action of the victim. By persuading a victim to visit a malicious Web site, a remote attacker could exploit this vulnerability to hijack the victim"s click actions and possibly launch further attacks against the victim.  Assigned (20161025)  None (candidate not yet proposed)    View
30451  CVE-2008-0334  Candidate  Cross-site scripting (XSS) vulnerability in pm/language/spanish/preferences.php in PMachine Pro 2.4.1 allows remote attackers to inject arbitrary web script or HTML via the L_PREF_NAME[855] parameter.  Assigned (20080117)  None (candidate not yet proposed)    View

Page 19947 of 20943, showing 5 records out of 104715 total, starting on record 99731, ending on 99735

Actions