CVE List

Id CVE No. Status Description Phase Votes Comments Actions
25346  CVE-2007-1989  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in DotClear before 1.2.6 allow remote attackers to inject arbitrary web script or HTML via the (1) post_id parameter to ecrire/trackback.php or the (2) tool_url parameter to tools/thememng/index.php. NOTE: some of these details are obtained from third party information.  Assigned (20070411)  None (candidate not yet proposed)    View
90882  CVE-2016-4063  Candidate  Use-after-free vulnerability in Foxit Reader and PhantomPDF before 7.3.4 on Windows allows remote attackers to execute arbitrary code via an object with a revision number of -1 in a PDF document.  Assigned (20160422)  None (candidate not yet proposed)    View
25602  CVE-2007-2245  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin before 2.10.1.0 allow remote attackers to inject arbitrary web script or HTML via (1) the fieldkey parameter to browse_foreigners.php or (2) certain input to the PMA_sanitize function.  Assigned (20070425)  None (candidate not yet proposed)    View
91138  CVE-2016-4319  Candidate  Atlassian JIRA Server before 7.1.9 has CSRF in auditing/settings.  Assigned (20160427)  None (candidate not yet proposed)    View
25858  CVE-2007-2501  Candidate  Eval injection vulnerability in codepress.html in CodePress before 0.9.4 allows remote attackers to execute arbitrary code via certain input that is used in an eval function call.  Assigned (20070503)  None (candidate not yet proposed)    View

Page 201 of 20943, showing 5 records out of 104715 total, starting on record 1001, ending on 1005

Actions