CVE List

Id CVE No. Status Description Phase Votes Comments Actions
88320  CVE-2016-1501  Candidate  ownCloud Server before 8.0.9 and 8.1.x before 8.1.4 allow remote authenticated users to obtain sensitive information via unspecified vectors, which reveals the installation path in the resulting exception messages.  Assigned (20160106)  None (candidate not yet proposed)    View
23040  CVE-2006-6936  Candidate  Cross-site scripting (XSS) vulnerability in Xtreme ASP Photo Gallery allows remote attackers to inject arbitrary HTML or web script via (1) the catname parameter to displaypic.asp or (2) the search field. NOTE: vector 1 likely overlaps CVE-2006-3032.  Assigned (20070116)  None (candidate not yet proposed)    View
88576  CVE-2016-1757  Candidate  Race condition in the kernel in Apple iOS before 9.3 and OS X before 10.11.4 allows attackers to execute arbitrary code in a privileged context via a crafted app.  Assigned (20160113)  None (candidate not yet proposed)    View
23296  CVE-2006-7192  Candidate  Microsoft ASP .NET Framework 2.0.50727.42 does not properly handle comment (/* */) enclosures, which allows remote attackers to bypass request filtering and conduct cross-site scripting (XSS) attacks, or cause a denial of service, as demonstrated via an xss:expression STYLE attribute in a closing XSS HTML tag.  Assigned (20070410)  None (candidate not yet proposed)    View
88832  CVE-2016-2013  Candidate  HPE Network Node Manager i (NNMi) 9.20, 9.23, 9.24, 9.25, 10.00, and 10.01 allows remote authenticated users to obtain sensitive information via unspecified vectors.  Assigned (20160122)  None (candidate not yet proposed)    View

Page 645 of 20943, showing 5 records out of 104715 total, starting on record 3221, ending on 3225

Actions