CVE List

Id CVE No. Status Description Phase Votes Comments Actions
84215  CVE-2015-6938  Candidate  Cross-site scripting (XSS) vulnerability in the file browser in notebook/notebookapp.py in IPython Notebook before 3.2.2 and Jupyter Notebook 4.0.x before 4.0.5 allows remote attackers to inject arbitrary web script or HTML via a folder name. NOTE: this was originally reported as a cross-site request forgery (CSRF) vulnerability, but this may be inaccurate.  Assigned (20150914)  None (candidate not yet proposed)    View
18935  CVE-2006-2831  Candidate  Drupal 4.6.x before 4.6.8 and 4.7.x before 4.7.2, when running under certain Apache configurations such as when FileInfo overrides are disabled within .htaccess, allows remote attackers to execute arbitrary code by uploading a file with multiple extensions, a variant of CVE-2006-2743.  Assigned (20060605)  None (candidate not yet proposed)    View
84471  CVE-2015-7194  Candidate  Buffer underflow in libjar in Mozilla Firefox before 42.0 and Firefox ESR 38.x before 38.4 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted ZIP archive.  Assigned (20150916)  None (candidate not yet proposed)    View
19191  CVE-2006-3087  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in EZGallery 1.5 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) pUserID, (2) aid, (3) aname, (4) uid, and (5) m parameter in (a) common/galleries.asp; (6) aid, (7) aname, (8) uid, (9) m, (10) gp, and (11) g parameter in (b) common/pupload.asp; and (12) msg, (13) fn and (14) gp parameter in (c) common/upload.asp.  Assigned (20060619)  None (candidate not yet proposed)    View
84727  CVE-2015-7450  Candidate  Serialized-object interfaces in certain IBM analytics, business solutions, cognitive, IT infrastructure, and mobile and social products allow remote attackers to execute arbitrary commands via a crafted serialized Java object, related to the InvokerTransformer class in the Apache Commons Collections library.  Assigned (20150929)  None (candidate not yet proposed)    View

Page 20238 of 20943, showing 5 records out of 104715 total, starting on record 101186, ending on 101190

Actions