CVE List

Id CVE No. Status Description Phase Votes Comments Actions
93718  CVE-2016-6898  Candidate  XML external entity (XXE) vulnerability in the Hyper Management Module (HMM) in Huawei E9000 rack servers with software before V100R001C00SPC296 allows remote authenticated users to read arbitrary files or cause a denial of service (web service outage) via a crafted XML document.  Assigned (20160822)  None (candidate not yet proposed)    View
28438  CVE-2007-5081  Candidate  Heap-based buffer overflow in RealNetworks RealPlayer 8, 10, 10.1, and possibly 10.5; RealOne Player 1 and 2; and RealPlayer Enterprise allows remote attackers to execute arbitrary code via a crafted RM file.  Assigned (20070924)  None (candidate not yet proposed)    View
93974  CVE-2016-7154  Candidate  Use-after-free vulnerability in the FIFO event channel code in Xen 4.4.x allows local guest OS administrators to cause a denial of service (host crash) and possibly execute arbitrary code or obtain sensitive information via an invalid guest frame number.  Assigned (20160906)  None (candidate not yet proposed)    View
28694  CVE-2007-5337  Candidate  Mozilla Firefox before 2.0.0.8 and SeaMonkey before 1.1.5, when running on Linux systems with gnome-vfs support, might allow remote attackers to read arbitrary files on SSH/sftp servers that accept key authentication by creating a web page on the target server, in which the web page contains URIs with (1) smb: or (2) sftp: schemes that access other files from the server.  Assigned (20071010)  None (candidate not yet proposed)    View
94230  CVE-2016-7410  Candidate  The _dwarf_read_loc_section function in dwarf_loc.c in libdwarf 20160613 allows attackers to cause a denial of service (buffer over-read) via a crafted file.  Assigned (20160909)  None (candidate not yet proposed)    View

Page 1771 of 20943, showing 5 records out of 104715 total, starting on record 8851, ending on 8855

Actions