CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
95733 | CVE-2016-8913 | Candidate | IBM Kenexa LMS on Cloud 13.1 and 13.2 - 13.2.4 could allow a remote attacker to traverse directories on the system. An attacker could send a specially-crafted URL request containing "dot dot" sequences (/../) to view arbitrary files on the system. | Assigned (20161025) | None (candidate not yet proposed) | View | |
30453 | CVE-2008-0336 | Candidate | Multiple cross-site request forgery (CSRF) vulnerabilities in BugTracker.NET before 2.7.2 allow remote attackers to delete arbitrary bugs and perform other administrative tasks via unspecified vectors, possibly related to delete_*.aspx pages, and massedit.aspx, subscribe.aspx, flag.aspx, and relationships.aspx. | Assigned (20080117) | None (candidate not yet proposed) | View | |
95989 | CVE-2016-9169 | Candidate | A reflected XSS vulnerability exists in the web console of the Document Viewer Agent in Novell GroupWise before 2014 R2 Support Pack 1 Hot Patch 2 that may enable a remote attacker to execute JavaScript in the context of a valid user"s browser session by getting the user to click on a specially crafted link. This could lead to session compromise or other browser-based attacks. | Assigned (20161103) | None (candidate not yet proposed) | View | |
30709 | CVE-2008-0592 | Candidate | Mozilla Firefox before 2.0.0.12 and SeaMonkey before 1.1.8 allows user-assisted remote attackers to cause a denial of service via a plain .txt file with a "Content-Disposition: attachment" and an invalid "Content-Type: plain/text," which prevents Firefox from rendering future plain text files within the browser. | Assigned (20080205) | None (candidate not yet proposed) | View | |
96245 | CVE-2016-9425 | Candidate | An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Heap-based buffer overflow in the addMultirowsForm function in w3m allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTML page. | Assigned (20161118) | None (candidate not yet proposed) | View |
Page 20114 of 20943, showing 5 records out of 104715 total, starting on record 100566, ending on 100570