CVE List

Id CVE No. Status Description Phase Votes Comments Actions
26085  CVE-2007-2728  Candidate  The soap extension in PHP calls php_rand_r with an uninitialized seed variable, which has unknown impact and attack vectors, a related issue to the mcrypt_create_iv issue covered by CVE-2007-2727.  Assigned (20070516)  None (candidate not yet proposed)    View
91621  CVE-2016-4802  Candidate  Multiple untrusted search path vulnerabilities in cURL and libcurl before 7.49.1, when built with SSPI or telnet is enabled, allow local users to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse (1) security.dll, (2) secur32.dll, or (3) ws2_32.dll in the application or current working directory.  Assigned (20160513)  None (candidate not yet proposed)    View
26341  CVE-2007-2984  Candidate  Multiple stack-based buffer overflows in the Media Technology Group CDPass ActiveX control in CDPass.dll allow remote attackers to execute arbitrary code via unspecified vectors, possibly involving the GetTOC2 method.  Assigned (20070531)  None (candidate not yet proposed)    View
91877  CVE-2016-5058  Candidate  OSRAM SYLVANIA Osram Lightify Pro through 2016-07-26 allows Zigbee replay.  Assigned (20160526)  None (candidate not yet proposed)    View
26597  CVE-2007-3240  Candidate  Cross-site scripting (XSS) vulnerability in 404.php in the Vistered-Little theme for WordPress allows remote attackers to inject arbitrary web script or HTML via the URI (REQUEST_URI) that accesses index.php. NOTE: this can be leveraged for PHP code execution in an administrative session.  Assigned (20070614)  None (candidate not yet proposed)    View

Page 18861 of 20943, showing 5 records out of 104715 total, starting on record 94301, ending on 94305

Actions