CVE List

Id CVE No. Status Description Phase Votes Comments Actions
26390  CVE-2007-3033  Candidate  Cross-site scripting (XSS) vulnerability in Windows Vista Feed Headlines Gadget (aka Sidebar RSS Feeds Gadget) in Windows Vista allows user-assisted remote attackers to execute arbitrary code via an RSS feed with crafted HTML attributes, which are not properly removed and are rendered in the local zone.  Assigned (20070605)  None (candidate not yet proposed)    View
91926  CVE-2016-5107  Candidate  The megasas_lookup_frame function in QEMU, when built with MegaRAID SAS 8708EM2 Host Bus Adapter emulation support, allows local guest OS administrators to cause a denial of service (out-of-bounds read and crash) via unspecified vectors.  Assigned (20160526)  None (candidate not yet proposed)    View
26646  CVE-2007-3289  Candidate  PHP remote file inclusion vulnerability in spaw/spaw_control.class.php in the WiwiMod 0.4 module for XOOPS allows remote attackers to execute arbitrary PHP code via a URL in the spaw_root parameter. NOTE: this issue is probably a duplicate of CVE-2006-4656.  Assigned (20070620)  None (candidate not yet proposed)    View
92182  CVE-2016-5363  Candidate  The IPTables firewall in OpenStack Neutron before 7.0.4 and 8.0.0 through 8.1.0 allows remote attackers to bypass an intended MAC-spoofing protection mechanism and consequently cause a denial of service or intercept network traffic via (1) a crafted DHCP discovery message or (2) crafted non-IP traffic.  Assigned (20160609)  None (candidate not yet proposed)    View
26902  CVE-2007-3545  Candidate  Buffer overflow in Warzone 2100 Resurrection before 2.0.7 allows remote attackers to cause a denial of service (application crash) or execute arbitrary code via a long filename when setting background music.  Assigned (20070703)  None (candidate not yet proposed)    View

Page 1768 of 20943, showing 5 records out of 104715 total, starting on record 8836, ending on 8840

Actions