CVE List

Id CVE No. Status Description Phase Votes Comments Actions
90644  CVE-2016-3825  Candidate  mm-video-v4l2/vidc/venc/src/omx_video_base.cpp in mediaserver in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-08-01 allocates an incorrect amount of memory, which allows attackers to gain privileges via a crafted application, aka internal bug 28816964.  Assigned (20160330)  None (candidate not yet proposed)    View
25364  CVE-2007-2007  Candidate  admin.php in pL-PHP beta 0.9 allows remote attackers to bypass authentication by setting the is_admin parameter to 1.  Assigned (20070412)  None (candidate not yet proposed)    View
90900  CVE-2016-4081  Candidate  epan/dissectors/packet-iax2.c in the IAX2 dissector in Wireshark 1.12.x before 1.12.11 and 2.0.x before 2.0.3 uses an incorrect integer data type, which allows remote attackers to cause a denial of service (infinite loop) via a crafted packet.  Assigned (20160424)  None (candidate not yet proposed)    View
25620  CVE-2007-2263  Candidate  Heap-based buffer overflow in RealNetworks RealPlayer 10.0, 10.1, and possibly 10.5, RealOne Player, and RealPlayer Enterprise allows remote attackers to execute arbitrary code via an SWF (Flash) file with malformed record headers.  Assigned (20070425)  None (candidate not yet proposed)    View
91156  CVE-2016-4337  Candidate  SQL injection vulnerability in the mgr.login.php file in Ktools.net Photostore before 4.7.5 allows remote attackers to execute arbitrary SQL commands via the email parameter in a recover_login action.  Assigned (20160427)  None (candidate not yet proposed)    View

Page 1650 of 20943, showing 5 records out of 104715 total, starting on record 8246, ending on 8250

Actions