CVE List

Id CVE No. Status Description Phase Votes Comments Actions
93428  CVE-2016-6608  Candidate  XSS issues were discovered in phpMyAdmin. This affects the database privilege check and the "Remove partitioning" functionality. Specially crafted database names can trigger the XSS attack. All 4.6.x versions (prior to 4.6.4) are affected.  Assigned (20160806)  None (candidate not yet proposed)    View
93427  CVE-2016-6607  Candidate  XSS issues were discovered in phpMyAdmin. This affects Zoom search (specially crafted column content can be used to trigger an XSS attack); GIS editor (certain fields in the graphical GIS editor are not properly escaped and can be used to trigger an XSS attack); Relation view; the following Transformations: Formatted, Imagelink, JPEG: Upload, RegexValidation, JPEG inline, PNG inline, and transformation wrapper; XML export; MediaWiki export; Designer; When the MySQL server is running with a specially-crafted log_bin directive; Database tab; Replication feature; and Database search. All 4.6.x versions (prior to 4.6.4), 4.4.x versions (prior to 4.4.15.8), and 4.0.x versions (prior to 4.0.10.17) are affected.  Assigned (20160806)  None (candidate not yet proposed)    View
103266  CVE-2017-6446  Candidate  XSS was discovered in Dotclear v2.11.2, affecting admin/blogs.php and admin/users.php with the sortby and order parameters.  Assigned (20170303)  None (candidate not yet proposed)    View
102695  CVE-2017-5875  Candidate  XSS was discovered in dotCMS 3.7.0, with an authenticated attack against the /myAccount addressID parameter.  Assigned (20170202)  None (candidate not yet proposed)    View
102697  CVE-2017-5877  Candidate  XSS was discovered in dotCMS 3.7.0, with an unauthenticated attack against the /about-us/locations/index direction parameter.  Assigned (20170202)  None (candidate not yet proposed)    View

Page 20889 of 20943, showing 5 records out of 104715 total, starting on record 104441, ending on 104445

Actions