CVE List

Id CVE No. Status Description Phase Votes Comments Actions
88318  CVE-2016-1499  Candidate  ownCloud Server before 8.0.10, 8.1.x before 8.1.5, and 8.2.x before 8.2.2 allow remote authenticated users to obtain sensitive information from a directory listing and possibly cause a denial of service (CPU consumption) via the force parameter to index.php/apps/files/ajax/scan.php.  Assigned (20160106)  None (candidate not yet proposed)    View
23038  CVE-2006-6934  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in Portix-PHP 0.4.2 allow remote attackers to inject arbitrary web script or HTML via the (1) titre or (2) auteur field in a forum post.  Assigned (20070116)  None (candidate not yet proposed)    View
88574  CVE-2016-1755  Candidate  The kernel in Apple iOS before 9.3, OS X before 10.11.4, tvOS before 9.2, and watchOS before 2.2 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app, a different vulnerability than CVE-2016-1754.  Assigned (20160113)  None (candidate not yet proposed)    View
23294  CVE-2006-7190  Candidate  Cross-site scripting (XSS) vulnerability in cgi-bin/user-lib/topics.pl in web-app.net WebAPP before 20060515 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors in the viewnews function, related to use of doubbctopic instead of doubbc.  Assigned (20070402)  None (candidate not yet proposed)    View
88830  CVE-2016-2011  Candidate  Cross-site scripting (XSS) vulnerability in HPE Network Node Manager i (NNMi) 9.20, 9.23, 9.24, 9.25, 10.00, and 10.01 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2016-2010.  Assigned (20160122)  None (candidate not yet proposed)    View

Page 20817 of 20943, showing 5 records out of 104715 total, starting on record 104081, ending on 104085

Actions