CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
20246 | CVE-2006-4142 | Candidate | SQL injection vulnerability in extra/online.php in Virtual War (VWar) 1.5.0 R14 and earlier allows remote attackers to execute arbitrary SQL commands via the n parameter. | Assigned (20060814) | None (candidate not yet proposed) | View | |
85782 | CVE-2015-8505 | Candidate | mediaserver in Android before 5.1.1 LMY48Z allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 17769851, a different vulnerability than CVE-2015-6616, CVE-2015-8506, and CVE-2015-8507. | Assigned (20151208) | None (candidate not yet proposed) | View | |
20502 | CVE-2006-4398 | Candidate | Multiple buffer overflows in the Apple Type Services (ATS) server in Mac OS X 10.4 through 10.4.8 allow local users to execute arbitrary code via crafted service requests. | Assigned (20060828) | None (candidate not yet proposed) | View | |
86038 | CVE-2015-8761 | Candidate | The Values module 7.x-1.x before 7.x-1.2 for Drupal does not properly check permissions, which allows remote administrators with the "Import value sets" permission to execute arbitrary PHP code via the exported values list in a ctools import. | Assigned (20160108) | None (candidate not yet proposed) | View | |
20758 | CVE-2006-4654 | Candidate | Format string vulnerability in Easy Address Book Web Server 1.2 allows remote attackers to cause a denial of service (crash) or "compromise the server" via encoded format string specifiers in the query string. | Assigned (20060908) | None (candidate not yet proposed) | View |
Page 1780 of 20943, showing 5 records out of 104715 total, starting on record 8896, ending on 8900