CVE List

Id CVE No. Status Description Phase Votes Comments Actions
24830  CVE-2007-1473  Candidate  Cross-site scripting (XSS) vulnerability in framework/NLS/NLS.php in Horde Framework before 3.1.4 RC1, when the login page contains a language selection box, allows remote attackers to inject arbitrary web script or HTML via the new_lang parameter to login.php.  Assigned (20070316)  None (candidate not yet proposed)    View
90366  CVE-2016-3547  Candidate  Unspecified vulnerability in the Oracle One-to-One Fulfillment component in Oracle E-Business Suite 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, and 12.2.5 allows remote attackers to affect confidentiality via vectors related to Content Manager.  Assigned (20160317)  None (candidate not yet proposed)    View
25086  CVE-2007-1729  Candidate  SQL injection vulnerability in includes/start.php in Flexbb 1.0.0 10005 Beta Release 1 allows remote attackers to execute arbitrary SQL commands via the flexbb_lang_id COOKIE parameter to index.php.  Assigned (20070327)  None (candidate not yet proposed)    View
90622  CVE-2016-3803  Candidate  The kernel filesystem implementation in Android before 2016-07-05 on Nexus 5X and 6P devices allows attackers to gain privileges via a crafted application, aka internal bug 28588434.  Assigned (20160330)  None (candidate not yet proposed)    View
25342  CVE-2007-1985  Candidate  Multiple PHP remote file inclusion vulnerabilities in phpexplorator.php in phpexplorator 2.0 allow remote attackers to execute arbitrary PHP code via a URL in the (1) cmd or (2) lang_path parameter.  Assigned (20070411)  None (candidate not yet proposed)    View

Page 20820 of 20943, showing 5 records out of 104715 total, starting on record 104096, ending on 104100

Actions