CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
43270 | CVE-2010-0686 | Candidate | WebAccess in VMware VirtualCenter 2.0.2 and 2.5, VMware Server 2.0, and VMware ESX 3.0.3 and 3.5 allows remote attackers to leverage proxy-server functionality to spoof the origin of requests via unspecified vectors, related to a "URL forwarding vulnerability." | Assigned (20100222) | None (candidate not yet proposed) | View | |
91626 | CVE-2016-4807 | Candidate | Web2py versions 2.14.5 and below was affected by Reflected XSS vulnerability, which allows an attacker to perform an XSS attack on logged in user (admin). | Assigned (20160515) | None (candidate not yet proposed) | View | |
91625 | CVE-2016-4806 | Candidate | Web2py versions 2.14.5 and below was affected by Local File Inclusion vulnerability, which allows a malicious intended user to read/access web server sensitive files. | Assigned (20160515) | None (candidate not yet proposed) | View | |
91627 | CVE-2016-4808 | Candidate | Web2py versions 2.14.5 and below was affected by CSRF (Cross Site Request Forgery) vulnerability, which allows an attacker to trick a logged in user to perform some unwanted actions i.e An attacker can trick an victim to disable the installed application just by sending a URL to victim. | Assigned (20160515) | None (candidate not yet proposed) | View | |
87844 | CVE-2016-10321 | Candidate | web2py before 2.14.6 does not properly check if a host is denied before verifying passwords, allowing a remote attacker to perform brute-force attacks. | Assigned (20170410) | None (candidate not yet proposed) | View |
Page 393 of 20943, showing 5 records out of 104715 total, starting on record 1961, ending on 1965