CVE List

Id CVE No. Status Description Phase Votes Comments Actions
27914  CVE-2007-4557  Candidate  Cross-site scripting (XSS) vulnerability in the webacc servlet in Novell GroupWise 6.5 WebAccess allows remote attackers to inject arbitrary web script or HTML via the User.Id parameter, as demonstrated by a URL within a url field in a STYLE element, possibly due to an incomplete fix for CVE-2004-2103.2.  Assigned (20070827)  None (candidate not yet proposed)    View
93450  CVE-2016-6630  Candidate  An issue was discovered in phpMyAdmin. An authenticated user can trigger a denial-of-service (DoS) attack by entering a very long password at the change password dialog. All 4.6.x versions (prior to 4.6.4), 4.4.x versions (prior to 4.4.15.8), and 4.0.x versions (prior to 4.0.10.17) are affected.  Assigned (20160806)  None (candidate not yet proposed)    View
28170  CVE-2007-4813  Candidate  Cross-site scripting (XSS) vulnerability in Domino Blogsphere 3.01 Beta 7 allows remote attackers to inject arbitrary web script or HTML via the name field. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.  Assigned (20070911)  None (candidate not yet proposed)    View
93706  CVE-2016-6886  Candidate  The pstm_reverse function in MatrixSSL before 3.8.4 allows remote attackers to cause a denial of service (invalid memory read and crash) via a (1) zero value or (2) the key"s modulus for the secret key during RSA key exchange.  Assigned (20160819)  None (candidate not yet proposed)    View
28426  CVE-2007-5069  Candidate  Directory traversal vulnerability in data/compatible.php in the Nuke Mobile Entertainment 1 addon for PHP-Nuke allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the module_name parameter.  Assigned (20070924)  None (candidate not yet proposed)    View

Page 849 of 20943, showing 5 records out of 104715 total, starting on record 4241, ending on 4245

Actions