CVE List

Id CVE No. Status Description Phase Votes Comments Actions
89106  CVE-2016-2287  Candidate  Cross-site scripting (XSS) vulnerability in XZERES 442SR OS on 442SR wind turbines allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20160209)  None (candidate not yet proposed)    View
23826  CVE-2007-0469  Candidate  The extract_files function in installer.rb in RubyGems before 0.9.1 does not check whether files exist before overwriting them, which allows user-assisted remote attackers to overwrite arbitrary files, cause a denial of service, or execute arbitrary code via crafted GEM packages.  Assigned (20070123)  None (candidate not yet proposed)    View
89362  CVE-2016-2543  Candidate  The snd_seq_ioctl_remove_events function in sound/core/seq/seq_clientmgr.c in the Linux kernel before 4.4.1 does not verify FIFO assignment before proceeding with FIFO clearing, which allows local users to cause a denial of service (NULL pointer dereference and OOPS) via a crafted ioctl call.  Assigned (20160223)  None (candidate not yet proposed)    View
24082  CVE-2007-0725  Candidate  Buffer overflow in the AirPortDriver module for AirPort in Apple Mac OS X 10.3.9 through 10.4.9, when running on hardware with the original AirPort wireless card, allows local users to execute arbitrary code by "sending malformed control commands."  Assigned (20070205)  None (candidate not yet proposed)    View
89618  CVE-2016-2799  Candidate  Heap-based buffer overflow in the graphite2::Slot::setAttr function in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7, allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted Graphite smart font.  Assigned (20160301)  None (candidate not yet proposed)    View

Page 1467 of 20943, showing 5 records out of 104715 total, starting on record 7331, ending on 7335

Actions