CVE List

Id CVE No. Status Description Phase Votes Comments Actions
89334  CVE-2016-2515  Candidate  Hawk before 3.1.3 and 4.x before 4.1.1 allow remote attackers to cause a denial of service (CPU consumption or partial outage) via a long (1) header or (2) URI that is matched against an improper regular expression.  Assigned (20160220)  None (candidate not yet proposed)    View
24054  CVE-2007-0697  Candidate  index2.php in ACGVannu 1.3 and earlier allows remote attackers to change the password or profile of a user via a modified id parameter, related to templates/modif.html. NOTE: some of these details are obtained from third party information.  Assigned (20070203)  None (candidate not yet proposed)    View
89590  CVE-2016-2771  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20160226)  None (candidate not yet proposed)    View
24310  CVE-2007-0953  Candidate  Cross-site scripting (XSS) vulnerability in search.pl in @Mail 4.61 and earlier allows remote attackers to inject arbitrary web script or HTML via the keywords parameter.  Assigned (20070214)  None (candidate not yet proposed)    View
89846  CVE-2016-3027  Candidate  IBM Security Access Manager for Web is vulnerable to a denial of service, caused by an XML External Entity Injection (XXE) error when processing XML data. A remote attacker could exploit this vulnerability to expose highly sensitive information or consume all available memory resources.  Assigned (20160309)  None (candidate not yet proposed)    View

Page 20169 of 20943, showing 5 records out of 104715 total, starting on record 100841, ending on 100845

Actions