CVE List

Id CVE No. Status Description Phase Votes Comments Actions
103138  CVE-2017-6318  Candidate  saned in sane-backends 1.0.25 allows remote attackers to obtain sensitive memory information via a crafted SANE_NET_CONTROL_OPTION packet.  Assigned (20170224)  None (candidate not yet proposed)    View
37858  CVE-2009-0423  Candidate  Directory traversal vulnerability in index.php in Php Photo Album (PHPPA) 0.8 BETA allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the preview parameter.  Assigned (20090204)  None (candidate not yet proposed)    View
103394  CVE-2017-6574  Candidate  A SQL injection issue is exploitable, with WordPress admin access, in the Mail Masta (aka mail-masta) plugin 1.0 for WordPress. This affects ./inc/lists/edit_member.php with the GET Parameter: filter_list.  Assigned (20170309)  None (candidate not yet proposed)    View
38114  CVE-2009-0679  Candidate  Cross-site scripting (XSS) vulnerability in the Your Account module in RavenNuke 2.30 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20090222)  None (candidate not yet proposed)    View
103650  CVE-2017-6830  Candidate  Heap-based buffer overflow in the alaw2linear_buf function in G711.cpp in Audio File Library (aka audiofile) 0.3.6 allows remote attackers to cause a denial of service (crash) via a crafted file.  Assigned (20170312)  None (candidate not yet proposed)    View

Page 18614 of 20943, showing 5 records out of 104715 total, starting on record 93066, ending on 93070

Actions