CVE List

Id CVE No. Status Description Phase Votes Comments Actions
25367  CVE-2007-2010  Candidate  Double free vulnerability in bftpd before 1.8 allows remote authenticated users to cause a denial of service (daemon crash) via a (1) get or (2) mget command.  Assigned (20070412)  None (candidate not yet proposed)    View
90903  CVE-2016-4084  Candidate  Integer signedness error in epan/dissectors/packet-mswsp.c in the MS-WSP dissector in Wireshark 2.0.x before 2.0.3 allows remote attackers to cause a denial of service (integer overflow and application crash) via a crafted packet that triggers an unexpected array size.  Assigned (20160424)  None (candidate not yet proposed)    View
25623  CVE-2007-2266  Candidate  Progress Webspeed Messenger allows remote attackers to read, create, modify, and execute arbitrary files by invoking webutil/_cpyfile.p in the WService parameter to (1) cgiip.exe or (2) wsisa.dll in scripts/, as demonstrated by using the save,editor options to create a new file using the fileName parameter.  Assigned (20070425)  None (candidate not yet proposed)    View
91159  CVE-2016-4340  Candidate  The impersonate feature in Gitlab 8.7.0, 8.6.0 through 8.6.7, 8.5.0 through 8.5.11, 8.4.0 through 8.4.9, 8.3.0 through 8.3.8, and 8.2.0 through 8.2.4 allows remote authenticated users to "log in" as any other user via unspecified vectors.  Assigned (20160427)  None (candidate not yet proposed)    View
25879  CVE-2007-2522  Candidate  Stack-based buffer overflow in the inoweb Console Server in CA Anti-Virus for the Enterprise r8, Threat Manager r8, Anti-Spyware for the Enterprise r8, and Protection Suites r3 allows remote attackers to execute arbitrary code via a long (1) username or (2) password.  Assigned (20070508)  None (candidate not yet proposed)    View

Page 1867 of 20943, showing 5 records out of 104715 total, starting on record 9331, ending on 9335

Actions