CVE List

Id CVE No. Status Description Phase Votes Comments Actions
88313  CVE-2016-1494  Candidate  The verify function in the RSA package for Python (Python-RSA) before 3.3 allows attackers to spoof signatures with a small public exponent via crafted signature padding, aka a BERserk attack.  Assigned (20160104)  None (candidate not yet proposed)    View
23033  CVE-2006-6929  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in Rapid Classified 3.1 allow remote attackers to inject arbitrary web script or HTML via the (1) id parameter to (a) reply.asp or (b) view_print.asp, the (2) SH1 parameter to (c) search.asp, the (3) name parameter to reply.asp, or the (4) dosearch parameter to (d) advsearch.asp.  Assigned (20070112)  None (candidate not yet proposed)    View
88569  CVE-2016-1750  Candidate  Use-after-free vulnerability in the kernel in Apple iOS before 9.3, OS X before 10.11.4, tvOS before 9.2, and watchOS before 2.2 allows attackers to execute arbitrary code in a privileged context via a crafted app.  Assigned (20160113)  None (candidate not yet proposed)    View
23289  CVE-2006-7185  Candidate  PHP remote file inclusion vulnerability in includes/user_standard.php in CMSmelborp Beta allows remote attackers to execute arbitrary PHP code via a URL in the relative_root parameter.  Assigned (20070330)  None (candidate not yet proposed)    View
88825  CVE-2016-2006  Candidate  HPE Data Protector before 7.03_108, 8.x before 8.15, and 9.x before 9.06 allows remote attackers to execute arbitrary code via unspecified vectors, aka ZDI-CAN-3353.  Assigned (20160122)  None (candidate not yet proposed)    View

Page 20399 of 20943, showing 5 records out of 104715 total, starting on record 101991, ending on 101995

Actions