CVE List

Id CVE No. Status Description Phase Votes Comments Actions
28178  CVE-2007-4821  Candidate  Buffer overflow in a certain ActiveX control in officeviewer.ocx 5.2.218.1 in EDraw Office Viewer Component 5.2 allows remote attackers to execute arbitrary code via a long first argument to the HttpDownloadFileToTempDir method, a different vulnerability than CVE-2007-3169.  Assigned (20070911)  None (candidate not yet proposed)    View
93714  CVE-2016-6894  Candidate  Arista EOS 4.15 before 4.15.8M, 4.16 before 4.16.7M, and 4.17 before 4.17.0F on DCS-7050 series devices allow remote attackers to cause a denial of service (device reboot) by sending crafted packets to the control plane.  Assigned (20160819)  None (candidate not yet proposed)    View
28434  CVE-2007-5077  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20070924)  None (candidate not yet proposed)    View
93970  CVE-2016-7150  Candidate  Cross-site scripting (XSS) vulnerability in b2evolution 6.7.5 and earlier allows remote authenticated users to inject arbitrary web script or HTML via the site name.  Assigned (20160905)  None (candidate not yet proposed)    View
28690  CVE-2007-5333  Candidate  Apache Tomcat 6.0.0 through 6.0.14, 5.5.0 through 5.5.25, and 4.1.0 through 4.1.36 does not properly handle (1) double quote (") characters or (2) %5C (encoded backslash) sequences in a cookie value, which might cause sensitive information such as session IDs to be leaked to remote attackers and enable session hijacking attacks. NOTE: this issue exists because of an incomplete fix for CVE-2007-3385.  Assigned (20071010)  None (candidate not yet proposed)    View

Page 1474 of 20943, showing 5 records out of 104715 total, starting on record 7366, ending on 7370

Actions