CVE List

Id CVE No. Status Description Phase Votes Comments Actions
96242  CVE-2016-9422  Candidate  An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. The feed_table_tag function in w3m doesn"t properly validate the value of table span, which allows remote attackers to cause a denial of service (stack and/or heap buffer overflow) and possibly execute arbitrary code via a crafted HTML page.  Assigned (20161118)  None (candidate not yet proposed)    View
30962  CVE-2008-0845  Candidate  SQL injection vulnerability in wp-people-popup.php in Dean Logan WP-People plugin 1.6.1 for WordPress allows remote attackers to execute arbitrary SQL commands via the person parameter.  Assigned (20080220)  None (candidate not yet proposed)    View
96498  CVE-2016-9678  Candidate  Use-after-free vulnerability in Citrix Provisioning Services before 7.12 allows attackers to execute arbitrary code via unspecified vectors.  Assigned (20161130)  None (candidate not yet proposed)    View
31218  CVE-2008-1101  Candidate  Buffer overflow in kvdocve.dll in the KeyView document viewing engine in Autonomy (formerly Verity) KeyView, as used by IBM Lotus Notes 7.0.2 and 7.0.3, allows remote attackers to execute arbitrary code via a long pathname, as demonstrated by a long SRC attribute of an IMG element in an HTML document.  Assigned (20080229)  None (candidate not yet proposed)    View
96754  CVE-2016-9934  Candidate  ext/wddx/wddx.c in PHP before 5.6.28 and 7.x before 7.0.13 allows remote attackers to cause a denial of service (NULL pointer dereference) via crafted serialized data in a wddxPacket XML document, as demonstrated by a PDORow string.  Assigned (20161212)  None (candidate not yet proposed)    View

Page 18748 of 20943, showing 5 records out of 104715 total, starting on record 93736, ending on 93740

Actions