CVE List

Id CVE No. Status Description Phase Votes Comments Actions
43270  CVE-2010-0686  Candidate  WebAccess in VMware VirtualCenter 2.0.2 and 2.5, VMware Server 2.0, and VMware ESX 3.0.3 and 3.5 allows remote attackers to leverage proxy-server functionality to spoof the origin of requests via unspecified vectors, related to a "URL forwarding vulnerability."  Assigned (20100222)  None (candidate not yet proposed)    View
91626  CVE-2016-4807  Candidate  Web2py versions 2.14.5 and below was affected by Reflected XSS vulnerability, which allows an attacker to perform an XSS attack on logged in user (admin).  Assigned (20160515)  None (candidate not yet proposed)    View
91625  CVE-2016-4806  Candidate  Web2py versions 2.14.5 and below was affected by Local File Inclusion vulnerability, which allows a malicious intended user to read/access web server sensitive files.  Assigned (20160515)  None (candidate not yet proposed)    View
91627  CVE-2016-4808  Candidate  Web2py versions 2.14.5 and below was affected by CSRF (Cross Site Request Forgery) vulnerability, which allows an attacker to trick a logged in user to perform some unwanted actions i.e An attacker can trick an victim to disable the installed application just by sending a URL to victim.  Assigned (20160515)  None (candidate not yet proposed)    View
87844  CVE-2016-10321  Candidate  web2py before 2.14.6 does not properly check if a host is denied before verifying passwords, allowing a remote attacker to perform brute-force attacks.  Assigned (20170410)  None (candidate not yet proposed)    View

Page 393 of 20943, showing 5 records out of 104715 total, starting on record 1961, ending on 1965

Actions