CVE List

Id CVE No. Status Description Phase Votes Comments Actions
27398  CVE-2007-4041  Candidate  Multiple argument injection vulnerabilities in Mozilla Firefox 2.0.0.5 and 3.0alpha allow remote attackers to execute arbitrary commands via a NULL byte (%00) and shell metacharacters in a (1) mailto, (2) nntp, (3) news, (4) snews, or (5) telnet URI, a similar issue to CVE-2007-3670.  Assigned (20070727)  None (candidate not yet proposed)    View
92934  CVE-2016-6114  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20160629)  None (candidate not yet proposed)    View
27654  CVE-2007-4297  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in yorumkaydet.asp in Dersimiz Haber Ekleme Modulu allow remote attackers to inject arbitrary web script or HTML via the (1) yazan, (2) mail, and (3) yorum parameters. NOTE: some of these details are obtained from third party information.  Assigned (20070810)  None (candidate not yet proposed)    View
93190  CVE-2016-6370  Candidate  Directory traversal vulnerability in the web interface in Cisco Hosted Collaboration Mediation Fulfillment (HCM-F) 10.6(3) and earlier allows remote authenticated users to read arbitrary files via a crafted pathname in an HTTP request, aka Bug ID CSCuz27255.  Assigned (20160726)  None (candidate not yet proposed)    View
27910  CVE-2007-4553  Candidate  The Thomson ST 2030 SIP phone with software 1.52.1 allows remote attackers to cause a denial of service (device hang) via an INVITE message with a Via header that contains a "/" (slash) instead of the required space following the SIP version number.  Assigned (20070827)  None (candidate not yet proposed)    View

Page 526 of 20943, showing 5 records out of 104715 total, starting on record 2626, ending on 2630

Actions