CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
25346 | CVE-2007-1989 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in DotClear before 1.2.6 allow remote attackers to inject arbitrary web script or HTML via the (1) post_id parameter to ecrire/trackback.php or the (2) tool_url parameter to tools/thememng/index.php. NOTE: some of these details are obtained from third party information. | Assigned (20070411) | None (candidate not yet proposed) | View | |
90882 | CVE-2016-4063 | Candidate | Use-after-free vulnerability in Foxit Reader and PhantomPDF before 7.3.4 on Windows allows remote attackers to execute arbitrary code via an object with a revision number of -1 in a PDF document. | Assigned (20160422) | None (candidate not yet proposed) | View | |
25602 | CVE-2007-2245 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin before 2.10.1.0 allow remote attackers to inject arbitrary web script or HTML via (1) the fieldkey parameter to browse_foreigners.php or (2) certain input to the PMA_sanitize function. | Assigned (20070425) | None (candidate not yet proposed) | View | |
91138 | CVE-2016-4319 | Candidate | Atlassian JIRA Server before 7.1.9 has CSRF in auditing/settings. | Assigned (20160427) | None (candidate not yet proposed) | View | |
25858 | CVE-2007-2501 | Candidate | Eval injection vulnerability in codepress.html in CodePress before 0.9.4 allows remote attackers to execute arbitrary code via certain input that is used in an eval function call. | Assigned (20070503) | None (candidate not yet proposed) | View |
Page 201 of 20943, showing 5 records out of 104715 total, starting on record 1001, ending on 1005