CVE List

Id CVE No. Status Description Phase Votes Comments Actions
90880  CVE-2016-4061  Candidate  Foxit Reader and PhantomPDF before 7.3.4 on Windows allow remote attackers to cause a denial of service (application crash) via a crafted content stream.  Assigned (20160422)  None (candidate not yet proposed)    View
25600  CVE-2007-2243  Candidate  OpenSSH 4.6 and earlier, when ChallengeResponseAuthentication is enabled, allows remote attackers to determine the existence of user accounts by attempting to authenticate via S/KEY, which displays a different response if the user account exists, a similar issue to CVE-2001-1483.  Assigned (20070425)  None (candidate not yet proposed)    View
91136  CVE-2016-4317  Candidate  Atlassian Confluence Server before 5.9.11 has XSS on the viewmyprofile.action page.  Assigned (20160427)  None (candidate not yet proposed)    View
25856  CVE-2007-2499  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in DVDdb 0.6 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the movieid parameter to loan.php or (2) the s parameter to listmovies.php.  Assigned (20070503)  None (candidate not yet proposed)    View
91392  CVE-2016-4573  Candidate  Fortinet FortiSwitch FSW-108D-POE, FSW-124D, FSW-124D-POE, FSW-224D-POE, FSW-224D-FPOE, FSW-248D-POE, FSW-248D-FPOE, FSW-424D, FSW-424D-POE, FSW-424D-FPOE, FSW-448D, FSW-448D-POE, FSW-448D-FPOE, FSW-524D, FSW-524D-FPOE, FSW-548D, FSW-548D-FPOE, FSW-1024D, FSW-1048D, FSW-3032D, and FSW-R-112D-POE models, when in FortiLink managed mode and upgraded to 3.4.1, might allow remote attackers to bypass authentication and gain administrative access via an empty password for the rest_admin account.  Assigned (20160510)  None (candidate not yet proposed)    View

Page 649 of 20943, showing 5 records out of 104715 total, starting on record 3241, ending on 3245

Actions