CVE List

Id CVE No. Status Description Phase Votes Comments Actions
29954  CVE-2007-6597  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in IPortalX before Build 033 allow remote attackers to inject arbitrary web script or HTML via the (1) KW and (2) SF parameters to forum/login_user.asp, and (3) the Date parameter to blogs.asp.  Assigned (20071231)  None (candidate not yet proposed)    View
95490  CVE-2016-8670  Candidate  Integer signedness error in the dynamicGetbuf function in gd_io_dp.c in the GD Graphics Library (aka libgd) through 2.2.3, as used in PHP before 5.6.28 and 7.x before 7.0.13, allows remote attackers to cause a denial of service (stack-based buffer overflow) or possibly have unspecified other impact via a crafted imagecreatefromstring call.  Assigned (20161015)  None (candidate not yet proposed)    View
30210  CVE-2008-0093  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in newticket.php in eTicket 1.5.5.2, and 1.5.6 RC2 and RC3, allow remote attackers to inject arbitrary web script or HTML via the (1) Name and (2) Subject parameters.  Assigned (20080107)  None (candidate not yet proposed)    View
95746  CVE-2016-8926  Candidate  IBM Tivoli Application Dependency Discovery Manager 7.2.2 and 7.3 could allow a remote attacker to read system files or data that is restricted to authorized users. IBM X-Force ID: 118539.  Assigned (20161025)  None (candidate not yet proposed)    View
30466  CVE-2008-0349  Candidate  Unspecified vulnerability in the PeopleTools component in Oracle PeopleSoft Enterprise and JD Edwards EnterpriseOne 8.48.15 and 8.49.07 has unknown impact and remote attack vectors, aka PSE02.  Assigned (20080117)  None (candidate not yet proposed)    View

Page 205 of 20943, showing 5 records out of 104715 total, starting on record 1021, ending on 1025

Actions