CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
91896 | CVE-2016-5077 | Candidate | Netikus EventSentry before 3.2.1.44 has XSS via SNMP. | Assigned (20160526) | None (candidate not yet proposed) | View | |
26616 | CVE-2007-3259 | Candidate | Calendarix 0.7.20070307 allows remote attackers to obtain sensitive information via (1) an invalid month[] parameter to calendar.php, (2) an invalid catview[] parameter to cal_week.php in a week operation, (3) an invalid ycyear[] parameter to yearcal.php, or (4) a direct request to cal_functions.inc.php, which reveals the installation path in various error messages. | Assigned (20070619) | None (candidate not yet proposed) | View | |
92152 | CVE-2016-5333 | Candidate | VMware Photos OS OVA 1.0 before 2016-08-14 has a default SSH public key in an authorized_keys file, which allows remote attackers to obtain SSH access by leveraging knowledge of the private key. | Assigned (20160607) | None (candidate not yet proposed) | View | |
26872 | CVE-2007-3515 | Candidate | SQL injection vulnerability in view_event.php in TotalCalendar 2.402 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter. | Assigned (20070703) | None (candidate not yet proposed) | View | |
92408 | CVE-2016-5589 | Candidate | Unspecified vulnerability in the Oracle CRM Technical Foundation component in Oracle E-Business Suite 12.1.1 through 12.1.3 and 12.2.3 through 12.2.6 allows remote attackers to affect confidentiality and integrity via unknown vectors. | Assigned (20160616) | None (candidate not yet proposed) | View |
Page 20346 of 20943, showing 5 records out of 104715 total, starting on record 101726, ending on 101730