CVE List

Id CVE No. Status Description Phase Votes Comments Actions
93959  CVE-2016-7139  Candidate  Cross-site scripting (XSS) vulnerability in an unspecified page template in Plone CMS 5.x through 5.0.6, 4.x through 4.3.11, and 3.3.x through 3.3.6 allows remote attackers to inject arbitrary web script or HTML via unknown vectors.  Assigned (20160905)  None (candidate not yet proposed)    View
28679  CVE-2007-5322  Candidate  Insecure method vulnerability in the FPOLE.OCX 6.0.8450.0 ActiveX control in Microsoft Visual FoxPro 6.0 allows remote attackers to execute arbitrary programs by specifying them as an argument to the FoxDoCmd function.  Assigned (20071009)  None (candidate not yet proposed)    View
94215  CVE-2016-7395  Candidate  SkPath.cpp in Skia, as used in Google Chrome before 53.0.2785.89 on Windows and OS X and before 53.0.2785.92 on Linux, does not properly validate the return values of ChopMonoAtY calls, which allows remote attackers to cause a denial of service (uninitialized memory access and application crash) or possibly have unspecified other impact via crafted graphics data.  Assigned (20160909)  None (candidate not yet proposed)    View
28935  CVE-2007-5578  Candidate  Basic Analysis and Security Engine (BASE) before 1.3.8 sends a redirect to the web browser but does not exit, which allows remote attackers to bypass authentication via (1) base_main.php, (2) base_qry_alert.php, and possibly other vectors.  Assigned (20071018)  None (candidate not yet proposed)    View
94471  CVE-2016-7651  Candidate  An issue was discovered in certain Apple products. iOS before 10.2 is affected. watchOS before 3.1.1 is affected. The issue involves the "Accounts" component, which allows local users to bypass intended authorization restrictions by leveraging the mishandling of an app uninstall.  Assigned (20160909)  None (candidate not yet proposed)    View

Page 603 of 20943, showing 5 records out of 104715 total, starting on record 3011, ending on 3015

Actions