CVE List

Id CVE No. Status Description Phase Votes Comments Actions
85994  CVE-2015-8717  Candidate  The dissect_sdp function in epan/dissectors/packet-sdp.c in the SDP dissector in Wireshark 1.12.x before 1.12.9 does not prevent use of a negative media count, which allows remote attackers to cause a denial of service (application crash) via a crafted packet.  Assigned (20160103)  None (candidate not yet proposed)    View
20714  CVE-2006-4610  Candidate  PHP remote file inclusion vulnerability in index.php in GrapAgenda 0.11 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via the page parameter.  Assigned (20060906)  None (candidate not yet proposed)    View
86250  CVE-2015-8973  Candidate  xmlhttp.php in MyBB (aka MyBulletinBoard) before 1.6.18 and 1.8.x before 1.8.6 and MyBB Merge System before 1.8.6 allows remote attackers to bypass intended access restrictions via vectors related to the forum password.  Assigned (20161117)  None (candidate not yet proposed)    View
20970  CVE-2006-4866  Candidate  Buffer overflow in kextload in Apple OS X, as used by TDIXSupport in Roxio Toast Titanium and possibly other products, allows local users to execute arbitrary code via a long extension argument.  Assigned (20060919)  None (candidate not yet proposed)    View
86506  CVE-2016-0210  Candidate  IBM Sterling B2B Integrator Standard Edition could allow a remote attacker to obtain sensitive information. By allowing HTTP OPTIONS method, a remote attacker could send a specially-crafted query to a vulnerable server running to cause the server to disclose sensitive information in the HTTP response.  Assigned (20151208)  None (candidate not yet proposed)    View

Page 18613 of 20943, showing 5 records out of 104715 total, starting on record 93061, ending on 93065

Actions