CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
96297 | CVE-2016-9477 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20161119) | None (candidate not yet proposed) | View | |
96298 | CVE-2016-9478 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20161119) | None (candidate not yet proposed) | View | |
96299 | CVE-2016-9479 | Candidate | The "lost password" functionality in b2evolution before 6.7.9 allows remote attackers to reset arbitrary user passwords via a crafted request. | Assigned (20161119) | None (candidate not yet proposed) | View | |
96300 | CVE-2016-9480 | Candidate | libdwarf 2016-10-21 allows context-dependent attackers to obtain sensitive information or cause a denial of service by using the "malformed dwarf file" approach, related to a "Heap Buffer Over-read" issue affecting the dwarf_util.c component, aka DW201611-006. | Assigned (20161121) | None (candidate not yet proposed) | View | |
96301 | CVE-2016-9481 | Candidate | In framework/modules/core/controllers/expCommentController.php of Exponent CMS 2.4.0, content_id input is passed into showComments. The method showComments is defined in the expCommentControllercontroller with the parameter "$this->params["content_id"]" used directly in SQL. Impact is a SQL injection. | Assigned (20161121) | None (candidate not yet proposed) | View |
Page 18654 of 20943, showing 5 records out of 104715 total, starting on record 93266, ending on 93270