CVE List

Id CVE No. Status Description Phase Votes Comments Actions
26379  CVE-2007-3022  Candidate  Symantec Reporting Server 1.0.197.0, and other versions before 1.0.224.0, as used in Symantec Client Security 3.1 and later, and Symantec AntiVirus Corporate Edition (SAV CE) 10.1 and later, displays the password hash for a user after a failed login attempt, which makes it easier for remote attackers to conduct brute force attacks.  Assigned (20070604)  None (candidate not yet proposed)    View
91915  CVE-2016-5096  Candidate  Integer overflow in the fread function in ext/standard/file.c in PHP before 5.5.36 and 5.6.x before 5.6.22 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a large integer in the second argument.  Assigned (20160526)  None (candidate not yet proposed)    View
26635  CVE-2007-3278  Candidate  PostgreSQL 8.1 and probably later versions, when local trust authentication is enabled and the Database Link library (dblink) is installed, allows remote attackers to access arbitrary accounts and execute arbitrary SQL queries via a dblink host parameter that proxies the connection from 127.0.0.1.  Assigned (20070619)  None (candidate not yet proposed)    View
92171  CVE-2016-5352  Candidate  epan/crypt/airpdcap.c in the IEEE 802.11 dissector in Wireshark 2.x before 2.0.4 mishandles certain length values, which allows remote attackers to cause a denial of service (application crash) via a crafted packet.  Assigned (20160609)  None (candidate not yet proposed)    View
26891  CVE-2007-3534  Candidate  SQL injection vulnerability in login.php in WebChat 0.78 allows remote attackers to execute arbitrary SQL commands via the rid parameter.  Assigned (20070703)  None (candidate not yet proposed)    View

Page 1528 of 20943, showing 5 records out of 104715 total, starting on record 7636, ending on 7640

Actions