CVE List

Id CVE No. Status Description Phase Votes Comments Actions
29457  CVE-2007-6100  Candidate  Cross-site scripting (XSS) vulnerability in libraries/auth/cookie.auth.lib.php in phpMyAdmin before 2.11.2.2, when logins are authenticated with the cookie auth_type, allows remote attackers to inject arbitrary web script or HTML via the convcharset parameter to index.php, a different vulnerability than CVE-2005-0992.  Assigned (20071123)  None (candidate not yet proposed)    View
94993  CVE-2016-8173  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20160909)  None (candidate not yet proposed)    View
29713  CVE-2007-6356  Candidate  exiftags before 1.01 allows attackers to cause a denial of service (infinite loop) via recursive IFD references in the EXIF data in a JPEG image.  Assigned (20071214)  None (candidate not yet proposed)    View
95249  CVE-2016-8429  Candidate  An elevation of privilege vulnerability in the NVIDIA GPU driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as Critical due to the possibility of a local permanent device compromise, which may require reflashing the operating system to repair the device. Product: Android. Versions: Kernel-3.10. Android ID: A-32160775. References: N-CVE-2016-8429.  Assigned (20161005)  None (candidate not yet proposed)    View
29969  CVE-2007-6612  Candidate  Directory traversal vulnerability in DirHandler (lib/mongrel/handlers.rb) in Mongrel 1.0.4 and 1.1.x before 1.1.3 allows remote attackers to read arbitrary files via an HTTP request containing double-encoded sequences (".%252e").  Assigned (20080103)  None (candidate not yet proposed)    View

Page 1397 of 20943, showing 5 records out of 104715 total, starting on record 6981, ending on 6985

Actions