CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
89106 | CVE-2016-2287 | Candidate | Cross-site scripting (XSS) vulnerability in XZERES 442SR OS on 442SR wind turbines allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | Assigned (20160209) | None (candidate not yet proposed) | View | |
23826 | CVE-2007-0469 | Candidate | The extract_files function in installer.rb in RubyGems before 0.9.1 does not check whether files exist before overwriting them, which allows user-assisted remote attackers to overwrite arbitrary files, cause a denial of service, or execute arbitrary code via crafted GEM packages. | Assigned (20070123) | None (candidate not yet proposed) | View | |
89362 | CVE-2016-2543 | Candidate | The snd_seq_ioctl_remove_events function in sound/core/seq/seq_clientmgr.c in the Linux kernel before 4.4.1 does not verify FIFO assignment before proceeding with FIFO clearing, which allows local users to cause a denial of service (NULL pointer dereference and OOPS) via a crafted ioctl call. | Assigned (20160223) | None (candidate not yet proposed) | View | |
24082 | CVE-2007-0725 | Candidate | Buffer overflow in the AirPortDriver module for AirPort in Apple Mac OS X 10.3.9 through 10.4.9, when running on hardware with the original AirPort wireless card, allows local users to execute arbitrary code by "sending malformed control commands." | Assigned (20070205) | None (candidate not yet proposed) | View | |
89618 | CVE-2016-2799 | Candidate | Heap-based buffer overflow in the graphite2::Slot::setAttr function in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7, allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted Graphite smart font. | Assigned (20160301) | None (candidate not yet proposed) | View |
Page 1467 of 20943, showing 5 records out of 104715 total, starting on record 7331, ending on 7335