CVE List

Id CVE No. Status Description Phase Votes Comments Actions
22788  CVE-2006-6684  Candidate  Heap-based buffer overflow in Pedro Lineu Orso chetcpasswd before 2.4 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a long X-Forwarded-For HTTP header. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.  Assigned (20061221)  None (candidate not yet proposed)    View
88324  CVE-2016-1505  Candidate  The filesystem storage backend in Radicale before 1.1 on Windows allows remote attackers to read or write to arbitrary files via a crafted path, as demonstrated by /c:/file/ignore.  Assigned (20160107)  None (candidate not yet proposed)    View
23044  CVE-2006-6940  Candidate  Buffer overflow in the ParseHeader function in clsOWA.cls in POP3/SMTP to OWA (pop2owa) 1.1.3 allows remote attackers to execute arbitrary code via a long header in an e-mail message.  Assigned (20070116)  None (candidate not yet proposed)    View
88580  CVE-2016-1761  Candidate  libxml2 in Apple iOS before 9.3, OS X before 10.11.4, and watchOS before 2.2 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted XML document.  Assigned (20160113)  None (candidate not yet proposed)    View
23300  CVE-2006-7196  Candidate  Cross-site scripting (XSS) vulnerability in the calendar application example in Apache Tomcat 4.0.0 through 4.0.6, 4.1.0 through 4.1.31, 5.0.0 through 5.0.30, and 5.5.0 through 5.5.15 allows remote attackers to inject arbitrary web script or HTML via the time parameter to cal2.jsp and possibly unspecified other vectors. NOTE: this may be related to CVE-2006-0254.1.  Assigned (20070422)  None (candidate not yet proposed)    View

Page 1501 of 20943, showing 5 records out of 104715 total, starting on record 7501, ending on 7505

Actions