CVE List

Id CVE No. Status Description Phase Votes Comments Actions
29968  CVE-2007-6611  Candidate  Cross-site scripting (XSS) vulnerability in view.php in Mantis before 1.1.0 allows remote attackers to inject arbitrary web script or HTML via a filename, related to bug_report.php.  Assigned (20080103)  None (candidate not yet proposed)    View
95504  CVE-2016-8684  Candidate  The MagickMalloc function in magick/memory.c in GraphicsMagick 1.3.25 allows remote attackers to have unspecified impact via a crafted image, which triggers a memory allocation failure and a "file truncation error for corrupt file."  Assigned (20161015)  None (candidate not yet proposed)    View
30224  CVE-2008-0107  Candidate  Integer underflow in SQL Server 7.0 SP4, 2000 SP4, 2005 SP1 and SP2, 2000 Desktop Engine (MSDE 2000) SP4, 2005 Express Edition SP1 and SP2, and 2000 Desktop Engine (WMSDE); Microsoft Data Engine (MSDE) 1.0 SP4; and Internal Database (WYukon) SP2 allows remote authenticated users to execute arbitrary code via a (1) SMB or (2) WebDAV pathname for an on-disk file (aka stored backup file) with a crafted record size value, which triggers a heap-based buffer overflow, aka "SQL Server Memory Corruption Vulnerability."  Assigned (20080107)  None (candidate not yet proposed)    View
95760  CVE-2016-8940  Candidate  IBM Tivoli Storage Manager (IBM Spectrum Protect) 6.1, 6.2, 6.3, and 7.1 does not perform sufficient authority checking on SQL queries. As a result, an attacker is able to submit SQL queries that access database tables that are not intended for access or use by administrators. The access of these product specific database tables may allow access to passwords or other sensitive information for the product. IBM Reference #: 1998946.  Assigned (20161025)  None (candidate not yet proposed)    View
30480  CVE-2008-0363  Candidate  Multiple SQL injection vulnerabilities in Clever Copy 3.0 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) ID parameter to postcomment.php and the (2) album parameter to gallery.php.  Assigned (20080118)  None (candidate not yet proposed)    View

Page 1312 of 20943, showing 5 records out of 104715 total, starting on record 6556, ending on 6560

Actions