CVE List

Id CVE No. Status Description Phase Votes Comments Actions
27641  CVE-2007-4284  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in Cisco Unified MeetingPlace Web Conferencing (MP) 5.3.235.0 and earlier allow remote attackers to inject arbitrary HTML and web script via the (1) Success Template (STPL) and (2) Failure Template (FTPL) parameters, which are not properly handled in an error message.  Assigned (20070809)  None (candidate not yet proposed)    View
93177  CVE-2016-6357  Candidate  A vulnerability in the configured security policies, including drop email filtering, in Cisco AsyncOS for Cisco Email Security Appliance (ESA) could allow an unauthenticated, remote attacker to bypass a configured drop filter by using an email with a corrupted attachment. More Information: CSCuz01651. Known Affected Releases: 10.0.9-015 9.7.1-066 9.9.6-026.  Assigned (20160726)  None (candidate not yet proposed)    View
27897  CVE-2007-4540  Candidate  Multiple SQL injection vulnerabilities in download.php in Olate Download (od) 3.4.2 allow remote attackers to execute arbitrary SQL commands via the (1) HTTP_REFERER or (2) HTTP_USER_AGENT HTTP header.  Assigned (20070827)  None (candidate not yet proposed)    View
93433  CVE-2016-6613  Candidate  An issue was discovered in phpMyAdmin. A user can specially craft a symlink on disk, to a file which phpMyAdmin is permitted to read but the user is not, which phpMyAdmin will then expose to the user. All 4.6.x versions (prior to 4.6.4), 4.4.x versions (prior to 4.4.15.8), and 4.0.x versions (prior to 4.0.10.17) are affected.  Assigned (20160806)  None (candidate not yet proposed)    View
28153  CVE-2007-4796  Candidate  Buffer overflow in uucp in bos.net.uucp in IBM AIX 5.2 and 5.3 allows local users to gain privileges via unspecified vectors.  Assigned (20070910)  None (candidate not yet proposed)    View

Page 20427 of 20943, showing 5 records out of 104715 total, starting on record 102131, ending on 102135

Actions