CVE List

Id CVE No. Status Description Phase Votes Comments Actions
92925  CVE-2016-6105  Candidate  IBM Tivoli Key Lifecycle Manager 2.5 and 2.6 do not perform an authentication check for a critical resource or functionality allowing anonymous users access to protected areas.  Assigned (20160629)  None (candidate not yet proposed)    View
27645  CVE-2007-4288  Candidate  Microsoft Windows Media Player 11 (wmplayer.exe) allows user-assisted remote attackers to cause a denial of service (application crash) via a crafted .au file that triggers a divide-by-zero error, as demonstrated by iapetus.au.  Assigned (20070809)  None (candidate not yet proposed)    View
93181  CVE-2016-6361  Candidate  The Aggregated MAC Protocol Data Unit (AMPDU) implementation on Cisco Aironet 1800, 2800, and 3800 devices with software before 8.2.121.0 and 8.3.x before 8.3.102.0 allows remote attackers to cause a denial of service (device reload) via a crafted AMPDU header, aka Bug ID CSCuz56288.  Assigned (20160726)  None (candidate not yet proposed)    View
27901  CVE-2007-4544  Candidate  Cross-site scripting (XSS) vulnerability in wp-newblog.php in WordPress multi-user (MU) 1.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the weblog_id parameter (Username field).  Assigned (20070827)  None (candidate not yet proposed)    View
93437  CVE-2016-6617  Candidate  An issue was discovered in phpMyAdmin. A specially crafted database and/or table name can be used to trigger an SQL injection attack through the export functionality. All 4.6.x versions (prior to 4.6.4) are affected.  Assigned (20160806)  None (candidate not yet proposed)    View

Page 20744 of 20943, showing 5 records out of 104715 total, starting on record 103716, ending on 103720

Actions