CVE List

Id CVE No. Status Description Phase Votes Comments Actions
96297  CVE-2016-9477  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20161119)  None (candidate not yet proposed)    View
96298  CVE-2016-9478  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20161119)  None (candidate not yet proposed)    View
96299  CVE-2016-9479  Candidate  The "lost password" functionality in b2evolution before 6.7.9 allows remote attackers to reset arbitrary user passwords via a crafted request.  Assigned (20161119)  None (candidate not yet proposed)    View
96300  CVE-2016-9480  Candidate  libdwarf 2016-10-21 allows context-dependent attackers to obtain sensitive information or cause a denial of service by using the "malformed dwarf file" approach, related to a "Heap Buffer Over-read" issue affecting the dwarf_util.c component, aka DW201611-006.  Assigned (20161121)  None (candidate not yet proposed)    View
96301  CVE-2016-9481  Candidate  In framework/modules/core/controllers/expCommentController.php of Exponent CMS 2.4.0, content_id input is passed into showComments. The method showComments is defined in the expCommentControllercontroller with the parameter "$this->params["content_id"]" used directly in SQL. Impact is a SQL injection.  Assigned (20161121)  None (candidate not yet proposed)    View

Page 18654 of 20943, showing 5 records out of 104715 total, starting on record 93266, ending on 93270

Actions