CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
85994 | CVE-2015-8717 | Candidate | The dissect_sdp function in epan/dissectors/packet-sdp.c in the SDP dissector in Wireshark 1.12.x before 1.12.9 does not prevent use of a negative media count, which allows remote attackers to cause a denial of service (application crash) via a crafted packet. | Assigned (20160103) | None (candidate not yet proposed) | View | |
20714 | CVE-2006-4610 | Candidate | PHP remote file inclusion vulnerability in index.php in GrapAgenda 0.11 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via the page parameter. | Assigned (20060906) | None (candidate not yet proposed) | View | |
86250 | CVE-2015-8973 | Candidate | xmlhttp.php in MyBB (aka MyBulletinBoard) before 1.6.18 and 1.8.x before 1.8.6 and MyBB Merge System before 1.8.6 allows remote attackers to bypass intended access restrictions via vectors related to the forum password. | Assigned (20161117) | None (candidate not yet proposed) | View | |
20970 | CVE-2006-4866 | Candidate | Buffer overflow in kextload in Apple OS X, as used by TDIXSupport in Roxio Toast Titanium and possibly other products, allows local users to execute arbitrary code via a long extension argument. | Assigned (20060919) | None (candidate not yet proposed) | View | |
86506 | CVE-2016-0210 | Candidate | IBM Sterling B2B Integrator Standard Edition could allow a remote attacker to obtain sensitive information. By allowing HTTP OPTIONS method, a remote attacker could send a specially-crafted query to a vulnerable server running to cause the server to disclose sensitive information in the HTTP response. | Assigned (20151208) | None (candidate not yet proposed) | View |
Page 18613 of 20943, showing 5 records out of 104715 total, starting on record 93061, ending on 93065