CVE List

Id CVE No. Status Description Phase Votes Comments Actions
27926  CVE-2007-4569  Candidate  backend/session.c in KDM in KDE 3.3.0 through 3.5.7, when autologin is configured and "shutdown with password" is enabled, allows remote attackers to bypass the password requirement and login to arbitrary accounts via unspecified vectors.  Assigned (20070828)  None (candidate not yet proposed)    View
93462  CVE-2016-6642  Candidate  Cross-site request forgery (CSRF) vulnerability in EMC ViPR SRM before 3.7.2 allows remote attackers to hijack the authentication of administrators for requests that upload files.  Assigned (20160810)  None (candidate not yet proposed)    View
28182  CVE-2007-4825  Candidate  Directory traversal vulnerability in PHP 5.2.4 and earlier allows attackers to bypass open_basedir restrictions and possibly execute arbitrary code via a .. (dot dot) in the dl function.  Assigned (20070911)  None (candidate not yet proposed)    View
93718  CVE-2016-6898  Candidate  XML external entity (XXE) vulnerability in the Hyper Management Module (HMM) in Huawei E9000 rack servers with software before V100R001C00SPC296 allows remote authenticated users to read arbitrary files or cause a denial of service (web service outage) via a crafted XML document.  Assigned (20160822)  None (candidate not yet proposed)    View
28438  CVE-2007-5081  Candidate  Heap-based buffer overflow in RealNetworks RealPlayer 8, 10, 10.1, and possibly 10.5; RealOne Player 1 and 2; and RealPlayer Enterprise allows remote attackers to execute arbitrary code via a crafted RM file.  Assigned (20070924)  None (candidate not yet proposed)    View

Page 1792 of 20943, showing 5 records out of 104715 total, starting on record 8956, ending on 8960

Actions