CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
29969 | CVE-2007-6612 | Candidate | Directory traversal vulnerability in DirHandler (lib/mongrel/handlers.rb) in Mongrel 1.0.4 and 1.1.x before 1.1.3 allows remote attackers to read arbitrary files via an HTTP request containing double-encoded sequences (".%252e"). | Assigned (20080103) | None (candidate not yet proposed) | View | |
95505 | CVE-2016-8685 | Candidate | The findnext function in decompose.c in potrace 1.13 allows remote attackers to cause a denial of service (invalid memory access and crash) via a crafted BMP image. | Assigned (20161015) | None (candidate not yet proposed) | View | |
30225 | CVE-2008-0108 | Candidate | Stack-based buffer overflow in wkcvqd01.dll in Microsoft Works 6 File Converter, as used in Office 2003 SP2 and SP3, Works 8.0, and Works Suite 2005, allows remote attackers to execute arbitrary code via a .wps file with crafted field lengths, aka "Microsoft Works File Converter Field Length Vulnerability." | Assigned (20080107) | None (candidate not yet proposed) | View | |
95761 | CVE-2016-8941 | Candidate | IBM Tivoli Storage Productivity Center is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. | Assigned (20161025) | None (candidate not yet proposed) | View | |
30481 | CVE-2008-0364 | Candidate | Buffer overflow in (1) BitTorrent 6.0 and earlier; and (2) uTorrent 1.7.5 and earlier, and 1.8-alpha-7834 and earlier in the 1.8.x series; on Windows allows remote attackers to cause a denial of service (application crash) via a long Unicode string representing a client version identifier. | Assigned (20080118) | None (candidate not yet proposed) | View |
Page 1389 of 20943, showing 5 records out of 104715 total, starting on record 6941, ending on 6945