CVE List

Id CVE No. Status Description Phase Votes Comments Actions
91413  CVE-2016-4594  Candidate  The Sandbox Profiles component in Apple iOS before 9.3.3, OS X before 10.11.6, tvOS before 9.2.2, and watchOS before 2.2.2 allows attackers to access the process list via a crafted app that makes an API call.  Assigned (20160511)  None (candidate not yet proposed)    View
26133  CVE-2007-2776  Candidate  AlstraSoft Template Seller Pro 3.25 and earlier sends a redirect to the web browser but does not exit when administrative credentials are missing, which allows remote attackers to inject a credential variable setting and obtain administrative access via a direct request to admin/changeinfo.php.  Assigned (20070521)  None (candidate not yet proposed)    View
91669  CVE-2016-4850  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20160517)  None (candidate not yet proposed)    View
26389  CVE-2007-3032  Candidate  Unspecified vulnerability in Windows Vista Contacts Gadget in Windows Vista allows user-assisted remote attackers to execute arbitrary code via crafted contact information that is not properly handled when it is imported.  Assigned (20070605)  None (candidate not yet proposed)    View
91925  CVE-2016-5106  Candidate  The megasas_dcmd_set_properties function in hw/scsi/megasas.c in QEMU, when built with MegaRAID SAS 8708EM2 Host Bus Adapter emulation support, allows local guest administrators to cause a denial of service (out-of-bounds write access) via vectors involving a MegaRAID Firmware Interface (MFI) command.  Assigned (20160526)  None (candidate not yet proposed)    View

Page 1709 of 20943, showing 5 records out of 104715 total, starting on record 8541, ending on 8545

Actions