CVE List

Id CVE No. Status Description Phase Votes Comments Actions
92670  CVE-2016-5850  Candidate  Cross-site scripting (XSS) vulnerability in the volume backup service module in Huawei Public Cloud Solution before 1.0.5 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20160628)  None (candidate not yet proposed)    View
27390  CVE-2007-4033  Candidate  Buffer overflow in the intT1_EnvGetCompletePath function in lib/t1lib/t1env.c in t1lib 5.1.1 allows context-dependent attackers to execute arbitrary code via a long FileName parameter. NOTE: this issue was originally reported to be in the imagepsloadfont function in php_gd2.dll in the gd (PHP_GD2) extension in PHP 5.2.3.  Assigned (20070727)  None (candidate not yet proposed)    View
92926  CVE-2016-6106  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20160629)  None (candidate not yet proposed)    View
27646  CVE-2007-4289  Candidate  Sun Java System Portal Server 7.0 does not properly process XSLT stylesheets in XSLT transforms in XML signatures, which allows context-dependent attackers to execute an arbitrary Java method via a crafted stylesheet, a related issue to CVE-2007-3715.  Assigned (20070809)  None (candidate not yet proposed)    View
93182  CVE-2016-6362  Candidate  Cisco Aironet 1800, 2800, and 3800 devices with software before 8.2.110.0, 8.2.12x before 8.2.121.0, and 8.3.x before 8.3.102.0 allow local users to gain privileges via crafted CLI parameters, aka Bug ID CSCuz24725.  Assigned (20160726)  None (candidate not yet proposed)    View

Page 20791 of 20943, showing 5 records out of 104715 total, starting on record 103951, ending on 103955

Actions