CVE List

Id CVE No. Status Description Phase Votes Comments Actions
27912  CVE-2007-4555  Candidate  Cross-site scripting (XSS) vulnerability in Ipswitch WS_FTP allows remote attackers to inject arbitrary web script or HTML via arguments to a valid command, which is not properly handled when it is displayed by the view log option in the administration interface. NOTE: this can be leveraged to create a new admin account.  Assigned (20070827)  None (candidate not yet proposed)    View
93448  CVE-2016-6628  Candidate  An issue was discovered in phpMyAdmin. An attacker may be able to trigger a user to download a specially crafted malicious SVG file. All 4.6.x versions (prior to 4.6.4), 4.4.x versions (prior to 4.4.15.8), and 4.0.x versions (prior to 4.0.10.17) are affected.  Assigned (20160806)  None (candidate not yet proposed)    View
28168  CVE-2007-4811  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in Netjuke 1.0-rc2 allow remote attackers to inject arbitrary web script or HTML via (1) the val parameter to alphabet.php in an alpha.albums action, or the PATH_INFO to (2) random.php or (3) admin/hidden.php.  Assigned (20070911)  None (candidate not yet proposed)    View
93704  CVE-2016-6884  Candidate  TLS cipher suites with CBC mode in TLS 1.1 and 1.2 in MatrixSSL before 3.8.3 allow remote attackers to cause a denial of service (out-of-bounds read) via a crafted message.  Assigned (20160819)  None (candidate not yet proposed)    View
28424  CVE-2007-5067  Candidate  Multiple buffer overflows in iMatix Xitami Web Server 2.5c2 allow remote attackers to execute arbitrary code via a long If-Modified-Since header to (1) xigui32.exe or (2) xitami.exe.  Assigned (20070924)  None (candidate not yet proposed)    View

Page 694 of 20943, showing 5 records out of 104715 total, starting on record 3466, ending on 3470

Actions