CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
93205 | CVE-2016-6385 | Candidate | Memory leak in the Smart Install client implementation in Cisco IOS 12.2 and 15.0 through 15.2 and IOS XE 3.2 through 3.8 allows remote attackers to cause a denial of service (memory consumption) via crafted image-list parameters, aka Bug ID CSCuy82367. | Assigned (20160726) | None (candidate not yet proposed) | View | |
27925 | CVE-2007-4568 | Candidate | Integer overflow in the build_range function in X.Org X Font Server (xfs) before 1.0.5 allows context-dependent attackers to execute arbitrary code via (1) QueryXBitmaps and (2) QueryXExtents protocol requests with crafted size values, which triggers a heap-based buffer overflow. | Assigned (20070828) | None (candidate not yet proposed) | View | |
93461 | CVE-2016-6641 | Candidate | Cross-site scripting (XSS) vulnerability in EMC ViPR SRM before 3.7.2 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors. | Assigned (20160810) | None (candidate not yet proposed) | View | |
28181 | CVE-2007-4824 | Candidate | Multiple cross-application scripting (XAS) vulnerabilities in Google Picasa have unspecified attack vectors and impact. NOTE: this information is based upon a vague pre-advisory. | Assigned (20070911) | None (candidate not yet proposed) | View | |
93717 | CVE-2016-6897 | Candidate | Cross-site request forgery (CSRF) vulnerability in the wp_ajax_update_plugin function in wp-admin/includes/ajax-actions.php in WordPress before 4.6 allows remote attackers to hijack the authentication of subscribers for /dev/random read operations by leveraging a late call to the check_ajax_referer function, a related issue to CVE-2016-6896. | Assigned (20160822) | None (candidate not yet proposed) | View |
Page 1734 of 20943, showing 5 records out of 104715 total, starting on record 8666, ending on 8670