CVE List

Id CVE No. Status Description Phase Votes Comments Actions
91896  CVE-2016-5077  Candidate  Netikus EventSentry before 3.2.1.44 has XSS via SNMP.  Assigned (20160526)  None (candidate not yet proposed)    View
26616  CVE-2007-3259  Candidate  Calendarix 0.7.20070307 allows remote attackers to obtain sensitive information via (1) an invalid month[] parameter to calendar.php, (2) an invalid catview[] parameter to cal_week.php in a week operation, (3) an invalid ycyear[] parameter to yearcal.php, or (4) a direct request to cal_functions.inc.php, which reveals the installation path in various error messages.  Assigned (20070619)  None (candidate not yet proposed)    View
92152  CVE-2016-5333  Candidate  VMware Photos OS OVA 1.0 before 2016-08-14 has a default SSH public key in an authorized_keys file, which allows remote attackers to obtain SSH access by leveraging knowledge of the private key.  Assigned (20160607)  None (candidate not yet proposed)    View
26872  CVE-2007-3515  Candidate  SQL injection vulnerability in view_event.php in TotalCalendar 2.402 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.  Assigned (20070703)  None (candidate not yet proposed)    View
92408  CVE-2016-5589  Candidate  Unspecified vulnerability in the Oracle CRM Technical Foundation component in Oracle E-Business Suite 12.1.1 through 12.1.3 and 12.2.3 through 12.2.6 allows remote attackers to affect confidentiality and integrity via unknown vectors.  Assigned (20160616)  None (candidate not yet proposed)    View

Page 20346 of 20943, showing 5 records out of 104715 total, starting on record 101726, ending on 101730

Actions