CVE List

Id CVE No. Status Description Phase Votes Comments Actions
93450  CVE-2016-6630  Candidate  An issue was discovered in phpMyAdmin. An authenticated user can trigger a denial-of-service (DoS) attack by entering a very long password at the change password dialog. All 4.6.x versions (prior to 4.6.4), 4.4.x versions (prior to 4.4.15.8), and 4.0.x versions (prior to 4.0.10.17) are affected.  Assigned (20160806)  None (candidate not yet proposed)    View
28170  CVE-2007-4813  Candidate  Cross-site scripting (XSS) vulnerability in Domino Blogsphere 3.01 Beta 7 allows remote attackers to inject arbitrary web script or HTML via the name field. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.  Assigned (20070911)  None (candidate not yet proposed)    View
93706  CVE-2016-6886  Candidate  The pstm_reverse function in MatrixSSL before 3.8.4 allows remote attackers to cause a denial of service (invalid memory read and crash) via a (1) zero value or (2) the key"s modulus for the secret key during RSA key exchange.  Assigned (20160819)  None (candidate not yet proposed)    View
28426  CVE-2007-5069  Candidate  Directory traversal vulnerability in data/compatible.php in the Nuke Mobile Entertainment 1 addon for PHP-Nuke allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the module_name parameter.  Assigned (20070924)  None (candidate not yet proposed)    View
93962  CVE-2016-7142  Candidate  The m_sasl module in InspIRCd before 2.0.23, when used with a service that supports SASL_EXTERNAL authentication, allows remote attackers to spoof certificate fingerprints and consequently log in as another user via a crafted SASL message.  Assigned (20160905)  None (candidate not yet proposed)    View

Page 841 of 20943, showing 5 records out of 104715 total, starting on record 4201, ending on 4205

Actions