CVE List

Id CVE No. Status Description Phase Votes Comments Actions
25075  CVE-2007-1718  Candidate  CRLF injection vulnerability in the mail function in PHP 4.0.0 through 4.4.6 and 5.0.0 through 5.2.1 allows remote attackers to inject arbitrary e-mail headers and possibly conduct spam attacks via a control character immediately following folding of the (1) Subject or (2) To parameter, as demonstrated by a parameter containing a " " sequence, related to an increment bug in the SKIP_LONG_HEADER_SEP macro.  Assigned (20070327)  None (candidate not yet proposed)    View
90611  CVE-2016-3792  Candidate  CORE/HDD/src/wlan_hdd_hostapd.c in the Qualcomm Wi-Fi driver in Android before 2016-07-05 on Nexus 7 (2013) devices mishandles userspace data copying, which allows attackers to gain privileges via a crafted application, aka Android internal bug 27725204 and Qualcomm internal bug CR561022.  Assigned (20160330)  None (candidate not yet proposed)    View
25331  CVE-2007-1974  Candidate  SQL injection vulnerability in the getArticle function in class/wfsarticle.php in WF-Section (aka WF-Sections) 1.0.1, as used in Xoops modules such as (1) Zmagazine 1.0, (2) Happy Linux XFsection 1.07 and earlier, and possibly other modules, allows remote attackers to execute arbitrary SQL commands via the articleid parameter to print.php.  Assigned (20070411)  None (candidate not yet proposed)    View
90867  CVE-2016-4048  Candidate  An issue was discovered in Open-Xchange OX App Suite before 7.8.1-rev11. Custom messages can be shown at the login screen to notify external users about issues with sharing links. This mechanism can be abused to inject arbitrary text messages. Users may get tricked to follow instructions injected by third parties as part of social engineering attacks.  Assigned (20160420)  None (candidate not yet proposed)    View
25587  CVE-2007-2230  Candidate  SQL injection vulnerability in CA Clever Path Portal allows remote authenticated users to execute limited SQL commands and retrieve arbitrary database contents via (1) the ofinterest parameter in a light search query, (2) description parameter in the advanced search query, and possibly other vectors.  Assigned (20070425)  None (candidate not yet proposed)    View

Page 18816 of 20943, showing 5 records out of 104715 total, starting on record 94076, ending on 94080

Actions