CVE List

Id CVE No. Status Description Phase Votes Comments Actions
90621  CVE-2016-3802  Candidate  The kernel filesystem implementation in Android before 2016-07-05 on Nexus 9 devices allows attackers to gain privileges via a crafted application, aka internal bug 28271368.  Assigned (20160330)  None (candidate not yet proposed)    View
25341  CVE-2007-1984  Candidate  PHP remote file inclusion vulnerability in index.php in lite-cms 0.2.1 allows remote attackers to execute arbitrary PHP code via a URL in the inc parameter.  Assigned (20070411)  None (candidate not yet proposed)    View
90877  CVE-2016-4058  Candidate  Cross-site scripting (XSS) vulnerability in Huawei Policy Center before V100R003C10SPC020 allows remote authenticated users to inject arbitrary web script or HTML via vectors related to "special characters on pages."  Assigned (20160422)  None (candidate not yet proposed)    View
25597  CVE-2007-2240  Candidate  The IBM Lenovo Access Support acpRunner ActiveX control, as distributed in acpcontroller.dll before 1.2.8.0 and possibly acpir.dll before 1.0.0.9 (Automated Solutions 1.0 before fix pack 1), does not properly validate digital signatures of downloaded software, which makes it easier for remote attackers to spoof a download.  Assigned (20070425)  None (candidate not yet proposed)    View
91133  CVE-2016-4314  Candidate  Directory traversal vulnerability in the LogViewer Admin Service in WSO2 Carbon 4.4.5 allows remote authenticated administrators to read arbitrary files via a .. (dot dot) in the logFile parameter to downloadgz-ajaxprocessor.jsp.  Assigned (20160427)  None (candidate not yet proposed)    View

Page 20742 of 20943, showing 5 records out of 104715 total, starting on record 103706, ending on 103710

Actions