CVE List

Id CVE No. Status Description Phase Votes Comments Actions
20246  CVE-2006-4142  Candidate  SQL injection vulnerability in extra/online.php in Virtual War (VWar) 1.5.0 R14 and earlier allows remote attackers to execute arbitrary SQL commands via the n parameter.  Assigned (20060814)  None (candidate not yet proposed)    View
85782  CVE-2015-8505  Candidate  mediaserver in Android before 5.1.1 LMY48Z allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 17769851, a different vulnerability than CVE-2015-6616, CVE-2015-8506, and CVE-2015-8507.  Assigned (20151208)  None (candidate not yet proposed)    View
20502  CVE-2006-4398  Candidate  Multiple buffer overflows in the Apple Type Services (ATS) server in Mac OS X 10.4 through 10.4.8 allow local users to execute arbitrary code via crafted service requests.  Assigned (20060828)  None (candidate not yet proposed)    View
86038  CVE-2015-8761  Candidate  The Values module 7.x-1.x before 7.x-1.2 for Drupal does not properly check permissions, which allows remote administrators with the "Import value sets" permission to execute arbitrary PHP code via the exported values list in a ctools import.  Assigned (20160108)  None (candidate not yet proposed)    View
20758  CVE-2006-4654  Candidate  Format string vulnerability in Easy Address Book Web Server 1.2 allows remote attackers to cause a denial of service (crash) or "compromise the server" via encoded format string specifiers in the query string.  Assigned (20060908)  None (candidate not yet proposed)    View

Page 1780 of 20943, showing 5 records out of 104715 total, starting on record 8896, ending on 8900

Actions