CVE List

Id CVE No. Status Description Phase Votes Comments Actions
90628  CVE-2016-3809  Candidate  The networking component in Android before 2016-07-05 on Android One, Nexus 5, Nexus 5X, Nexus 6, Nexus 6P, Nexus 7 (2013), Nexus 9, Nexus Player, and Pixel C devices allows attackers to obtain sensitive information via a crafted application, aka internal bug 27532522.  Assigned (20160330)  None (candidate not yet proposed)    View
25348  CVE-2007-1991  Candidate  Cross-site scripting (XSS) vulnerability in mail/signup.asp in CmailServer WebMail 5.4.3, and possibly earlier, allows remote attackers to inject arbitrary web script or HTML via the Comment parameter, a different vector than CVE-2007-1927.  Assigned (20070411)  None (candidate not yet proposed)    View
90884  CVE-2016-4065  Candidate  The ConvertToPDF plugin in Foxit Reader and PhantomPDF before 7.3.4 on Windows, when the gflags app is enabled, allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted (1) JPEG, (2) GIF, or (3) BMP image.  Assigned (20160422)  None (candidate not yet proposed)    View
25604  CVE-2007-2247  Candidate  SQL injection vulnerability in modules/news/article.php in phpMySpace Gold 8.10 allows remote attackers to execute arbitrary SQL commands via the item_id parameter.  Assigned (20070425)  None (candidate not yet proposed)    View
91140  CVE-2016-4321  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20160427)  None (candidate not yet proposed)    View

Page 362 of 20943, showing 5 records out of 104715 total, starting on record 1806, ending on 1810

Actions