CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
28178 | CVE-2007-4821 | Candidate | Buffer overflow in a certain ActiveX control in officeviewer.ocx 5.2.218.1 in EDraw Office Viewer Component 5.2 allows remote attackers to execute arbitrary code via a long first argument to the HttpDownloadFileToTempDir method, a different vulnerability than CVE-2007-3169. | Assigned (20070911) | None (candidate not yet proposed) | View | |
93714 | CVE-2016-6894 | Candidate | Arista EOS 4.15 before 4.15.8M, 4.16 before 4.16.7M, and 4.17 before 4.17.0F on DCS-7050 series devices allow remote attackers to cause a denial of service (device reboot) by sending crafted packets to the control plane. | Assigned (20160819) | None (candidate not yet proposed) | View | |
28434 | CVE-2007-5077 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20070924) | None (candidate not yet proposed) | View | |
93970 | CVE-2016-7150 | Candidate | Cross-site scripting (XSS) vulnerability in b2evolution 6.7.5 and earlier allows remote authenticated users to inject arbitrary web script or HTML via the site name. | Assigned (20160905) | None (candidate not yet proposed) | View | |
28690 | CVE-2007-5333 | Candidate | Apache Tomcat 6.0.0 through 6.0.14, 5.5.0 through 5.5.25, and 4.1.0 through 4.1.36 does not properly handle (1) double quote (") characters or (2) %5C (encoded backslash) sequences in a cookie value, which might cause sensitive information such as session IDs to be leaked to remote attackers and enable session hijacking attacks. NOTE: this issue exists because of an incomplete fix for CVE-2007-3385. | Assigned (20071010) | None (candidate not yet proposed) | View |
Page 1474 of 20943, showing 5 records out of 104715 total, starting on record 7366, ending on 7370