CVE List

Id CVE No. Status Description Phase Votes Comments Actions
93449  CVE-2016-6629  Candidate  An issue was discovered in phpMyAdmin involving the $cfg["ArbitraryServerRegexp"] configuration directive. An attacker could reuse certain cookie values in a way of bypassing the servers defined by ArbitraryServerRegexp. All 4.6.x versions (prior to 4.6.4), 4.4.x versions (prior to 4.4.15.8), and 4.0.x versions (prior to 4.0.10.17) are affected.  Assigned (20160806)  None (candidate not yet proposed)    View
28169  CVE-2007-4812  Candidate  Buffer overflow in Apple Safari 3.0.3 522.15.5, and other versions before Beta Update 3.0.4, allows remote attackers to cause a denial of service (crash) and possibly have other unspecified impact by setting document.location.hash to a long string. NOTE: the crash might actually occur in the alert method.  Assigned (20070911)  None (candidate not yet proposed)    View
93705  CVE-2016-6885  Candidate  The pstm_exptmod function in MatrixSSL before 3.8.4 allows remote attackers to cause a denial of service (invalid free and crash) via a base zero value for the modular exponentiation.  Assigned (20160819)  None (candidate not yet proposed)    View
28425  CVE-2007-5068  Candidate  SQL injection vulnerability in index.php in phpFullAnnu (PFA) 6.0 allows remote attackers to execute arbitrary SQL commands via the mod parameter.  Assigned (20070924)  None (candidate not yet proposed)    View
93961  CVE-2016-7141  Candidate  curl and libcurl before 7.50.2, when built with NSS and the libnsspem.so library is available at runtime, allow remote attackers to hijack the authentication of a TLS connection by leveraging reuse of a previously loaded client certificate from file for a connection for which no certificate has been set, a different vulnerability than CVE-2016-5420.  Assigned (20160905)  None (candidate not yet proposed)    View

Page 1372 of 20943, showing 5 records out of 104715 total, starting on record 6856, ending on 6860

Actions