CVE List

Id CVE No. Status Description Phase Votes Comments Actions
91645  CVE-2016-4826  Candidate  Cross-site scripting (XSS) vulnerability in the Collne Welcart e-Commerce plugin before 1.8.3 for WordPress allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2016-4827.  Assigned (20160517)  None (candidate not yet proposed)    View
26365  CVE-2007-3008  Candidate  Mbedthis AppWeb before 2.2.2 enables the HTTP TRACE method, which has unspecified impact probably related to remote information leaks and cross-site tracing (XST) attacks, a related issue to CVE-2004-2320 and CVE-2005-3398.  Assigned (20070604)  None (candidate not yet proposed)    View
91901  CVE-2016-5082  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20160526)  None (candidate not yet proposed)    View
26621  CVE-2007-3264  Candidate  Unspecified vulnerability in the PD tools component in IBM WebSphere Application Server (WAS) 6.1.0.7 and earlier has unknown impact and attack vectors.  Assigned (20070619)  None (candidate not yet proposed)    View
92157  CVE-2016-5338  Candidate  The (1) esp_reg_read and (2) esp_reg_write functions in hw/scsi/esp.c in QEMU allow local guest OS administrators to cause a denial of service (QEMU process crash) or execute arbitrary code on the QEMU host via vectors related to the information transfer buffer.  Assigned (20160608)  None (candidate not yet proposed)    View

Page 20742 of 20943, showing 5 records out of 104715 total, starting on record 103706, ending on 103710

Actions