CVE List

Id CVE No. Status Description Phase Votes Comments Actions
91889  CVE-2016-5070  Candidate  Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 store passwords in cleartext.  Assigned (20160526)  None (candidate not yet proposed)    View
26609  CVE-2007-3252  Candidate  PortalApp stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for 8691.mdb, a different vector than CVE-2004-1786.  Assigned (20070618)  None (candidate not yet proposed)    View
92145  CVE-2016-5326  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20160607)  None (candidate not yet proposed)    View
26865  CVE-2007-3508  Candidate  ** DISPUTED ** Integer overflow in the process_envvars function in elf/rtld.c in glibc before 2.5-rc4 might allow local users to execute arbitrary code via a large LD_HWCAP_MASK environment variable value. NOTE: the glibc maintainers state that they do not believe that this issue is exploitable for code execution.  Assigned (20070702)  None (candidate not yet proposed)    View
92401  CVE-2016-5582  Candidate  Unspecified vulnerability in Oracle Java SE 6u121, 7u111, 8u102; and Java SE Embedded 8u101 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Hotspot, a different vulnerability than CVE-2016-5573.  Assigned (20160616)  None (candidate not yet proposed)    View

Page 18664 of 20943, showing 5 records out of 104715 total, starting on record 93316, ending on 93320

Actions