CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
26379 | CVE-2007-3022 | Candidate | Symantec Reporting Server 1.0.197.0, and other versions before 1.0.224.0, as used in Symantec Client Security 3.1 and later, and Symantec AntiVirus Corporate Edition (SAV CE) 10.1 and later, displays the password hash for a user after a failed login attempt, which makes it easier for remote attackers to conduct brute force attacks. | Assigned (20070604) | None (candidate not yet proposed) | View | |
91915 | CVE-2016-5096 | Candidate | Integer overflow in the fread function in ext/standard/file.c in PHP before 5.5.36 and 5.6.x before 5.6.22 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a large integer in the second argument. | Assigned (20160526) | None (candidate not yet proposed) | View | |
26635 | CVE-2007-3278 | Candidate | PostgreSQL 8.1 and probably later versions, when local trust authentication is enabled and the Database Link library (dblink) is installed, allows remote attackers to access arbitrary accounts and execute arbitrary SQL queries via a dblink host parameter that proxies the connection from 127.0.0.1. | Assigned (20070619) | None (candidate not yet proposed) | View | |
92171 | CVE-2016-5352 | Candidate | epan/crypt/airpdcap.c in the IEEE 802.11 dissector in Wireshark 2.x before 2.0.4 mishandles certain length values, which allows remote attackers to cause a denial of service (application crash) via a crafted packet. | Assigned (20160609) | None (candidate not yet proposed) | View | |
26891 | CVE-2007-3534 | Candidate | SQL injection vulnerability in login.php in WebChat 0.78 allows remote attackers to execute arbitrary SQL commands via the rid parameter. | Assigned (20070703) | None (candidate not yet proposed) | View |
Page 1528 of 20943, showing 5 records out of 104715 total, starting on record 7636, ending on 7640