CVE List

Id CVE No. Status Description Phase Votes Comments Actions
22528  CVE-2006-6424  Candidate  Multiple buffer overflows in Novell NetMail before 3.52e FTF2 allow remote attackers to execute arbitrary code (1) by appending literals to certain IMAP verbs when specifying command continuation requests to IMAPD, resulting in a heap overflow; and (2) via crafted arguments to the STOR command to the Network Messaging Application Protocol (NMAP) daemon, resulting in a stack overflow.  Assigned (20061209)  None (candidate not yet proposed)    View
88064  CVE-2016-1245  Candidate  It was discovered that the zebra daemon in Quagga before 1.0.20161017 suffered from a stack-based buffer overflow when processing IPv6 Neighbor Discovery messages. The root cause was relying on BUFSIZ to be compatible with a message size; however, BUFSIZ is system-dependent.  Assigned (20151227)  None (candidate not yet proposed)    View
22784  CVE-2006-6680  Candidate  Pedro Lineu Orso chetcpasswd before 2.3.1 does not document the need for 0400 permissions on /etc/chetcpasswd.allow, which might allow local users to gain sensitive information by reading this file.  Assigned (20061221)  None (candidate not yet proposed)    View
88320  CVE-2016-1501  Candidate  ownCloud Server before 8.0.9 and 8.1.x before 8.1.4 allow remote authenticated users to obtain sensitive information via unspecified vectors, which reveals the installation path in the resulting exception messages.  Assigned (20160106)  None (candidate not yet proposed)    View
23040  CVE-2006-6936  Candidate  Cross-site scripting (XSS) vulnerability in Xtreme ASP Photo Gallery allows remote attackers to inject arbitrary HTML or web script via (1) the catname parameter to displaypic.asp or (2) the search field. NOTE: vector 1 likely overlaps CVE-2006-3032.  Assigned (20070116)  None (candidate not yet proposed)    View

Page 1191 of 20943, showing 5 records out of 104715 total, starting on record 5951, ending on 5955

Actions