CVE List

Id CVE No. Status Description Phase Votes Comments Actions
93448  CVE-2016-6628  Candidate  An issue was discovered in phpMyAdmin. An attacker may be able to trigger a user to download a specially crafted malicious SVG file. All 4.6.x versions (prior to 4.6.4), 4.4.x versions (prior to 4.4.15.8), and 4.0.x versions (prior to 4.0.10.17) are affected.  Assigned (20160806)  None (candidate not yet proposed)    View
28168  CVE-2007-4811  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in Netjuke 1.0-rc2 allow remote attackers to inject arbitrary web script or HTML via (1) the val parameter to alphabet.php in an alpha.albums action, or the PATH_INFO to (2) random.php or (3) admin/hidden.php.  Assigned (20070911)  None (candidate not yet proposed)    View
93704  CVE-2016-6884  Candidate  TLS cipher suites with CBC mode in TLS 1.1 and 1.2 in MatrixSSL before 3.8.3 allow remote attackers to cause a denial of service (out-of-bounds read) via a crafted message.  Assigned (20160819)  None (candidate not yet proposed)    View
28424  CVE-2007-5067  Candidate  Multiple buffer overflows in iMatix Xitami Web Server 2.5c2 allow remote attackers to execute arbitrary code via a long If-Modified-Since header to (1) xigui32.exe or (2) xitami.exe.  Assigned (20070924)  None (candidate not yet proposed)    View
93960  CVE-2016-7140  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in the ZMI page in Zope2 in Plone CMS 5.x through 5.0.6, 4.x through 4.3.11, and 3.3.x through 3.3.6 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20160905)  None (candidate not yet proposed)    View

Page 682 of 20943, showing 5 records out of 104715 total, starting on record 3406, ending on 3410

Actions