CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
28951 | CVE-2007-5594 | Candidate | Drupal 5.x before 5.3 does not apply its Drupal Forms API protection against the user deletion form, which allows remote attackers to delete users via a cross-site request forgery (CSRF) attack. | Assigned (20071019) | None (candidate not yet proposed) | View | |
94487 | CVE-2016-7667 | Candidate | An issue was discovered in certain Apple products. iOS before 10.2 is affected. macOS before 10.12.2 is affected. The issue involves the "CoreText" component. It allows remote attackers to cause a denial of service via a crafted string. | Assigned (20160909) | None (candidate not yet proposed) | View | |
29207 | CVE-2007-5850 | Candidate | Heap-based buffer overflow in Desktop Services in Apple Mac OS X 10.4.11 allows user-assisted attackers to execute arbitrary code via a directory with a crafted .DS_Store file. | Assigned (20071106) | None (candidate not yet proposed) | View | |
94743 | CVE-2016-7923 | Candidate | The ARP parser in tcpdump before 4.9.0 has a buffer overflow in print-arp.c:arp_print(). | Assigned (20160909) | None (candidate not yet proposed) | View | |
29463 | CVE-2007-6106 | Candidate | SQL injection vulnerability in index.php in AlstraSoft E-Friends 4.98 and earlier allows remote attackers to execute arbitrary SQL commands via the seid parameter in a viewevent action. | Assigned (20071123) | None (candidate not yet proposed) | View |
Page 1849 of 20943, showing 5 records out of 104715 total, starting on record 9241, ending on 9245