CVE List

Id CVE No. Status Description Phase Votes Comments Actions
28951  CVE-2007-5594  Candidate  Drupal 5.x before 5.3 does not apply its Drupal Forms API protection against the user deletion form, which allows remote attackers to delete users via a cross-site request forgery (CSRF) attack.  Assigned (20071019)  None (candidate not yet proposed)    View
94487  CVE-2016-7667  Candidate  An issue was discovered in certain Apple products. iOS before 10.2 is affected. macOS before 10.12.2 is affected. The issue involves the "CoreText" component. It allows remote attackers to cause a denial of service via a crafted string.  Assigned (20160909)  None (candidate not yet proposed)    View
29207  CVE-2007-5850  Candidate  Heap-based buffer overflow in Desktop Services in Apple Mac OS X 10.4.11 allows user-assisted attackers to execute arbitrary code via a directory with a crafted .DS_Store file.  Assigned (20071106)  None (candidate not yet proposed)    View
94743  CVE-2016-7923  Candidate  The ARP parser in tcpdump before 4.9.0 has a buffer overflow in print-arp.c:arp_print().  Assigned (20160909)  None (candidate not yet proposed)    View
29463  CVE-2007-6106  Candidate  SQL injection vulnerability in index.php in AlstraSoft E-Friends 4.98 and earlier allows remote attackers to execute arbitrary SQL commands via the seid parameter in a viewevent action.  Assigned (20071123)  None (candidate not yet proposed)    View

Page 1849 of 20943, showing 5 records out of 104715 total, starting on record 9241, ending on 9245

Actions