CVE List

Id CVE No. Status Description Phase Votes Comments Actions
91671  CVE-2016-4852  Candidate  YoruFukurou (NightOwl) before 2.85 relies on support for emoji skin-tone modifiers even though this support is missing from the CoreText CTFramesetter API on OS X 10.9, which allows remote attackers to cause a denial of service (application crash) via a crafted emoji character sequence.  Assigned (20160517)  None (candidate not yet proposed)    View
26391  CVE-2007-3034  Candidate  Integer overflow in the AttemptWrite function in Graphics Rendering Engine (GDI) on Microsoft Windows 2000 SP4, XP SP2, and Server 2003 SP1 allows remote attackers to execute arbitrary code via a crafted metafile (image) with a large record length value, which triggers a heap-based buffer overflow.  Assigned (20070605)  None (candidate not yet proposed)    View
91927  CVE-2016-5108  Candidate  Buffer overflow in the DecodeAdpcmImaQT function in modules/codec/adpcm.c in VideoLAN VLC media player before 2.2.4 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted QuickTime IMA file.  Assigned (20160527)  None (candidate not yet proposed)    View
26647  CVE-2007-3290  Candidate  categoria.php in LiveCMS 3.4 and earlier allows remote attackers to obtain sensitive information via a " (quote) character in the cid parameter, which reveals the path in a forced SQL error message.  Assigned (20070620)  None (candidate not yet proposed)    View
92183  CVE-2016-5364  Candidate  Cross-site scripting (XSS) vulnerability in manage_custom_field_edit_page.php in MantisBT 1.2.19 and earlier allows remote attackers to inject arbitrary web script or HTML via the return parameter.  Assigned (20160609)  None (candidate not yet proposed)    View

Page 1892 of 20943, showing 5 records out of 104715 total, starting on record 9456, ending on 9460

Actions