CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
91671 | CVE-2016-4852 | Candidate | YoruFukurou (NightOwl) before 2.85 relies on support for emoji skin-tone modifiers even though this support is missing from the CoreText CTFramesetter API on OS X 10.9, which allows remote attackers to cause a denial of service (application crash) via a crafted emoji character sequence. | Assigned (20160517) | None (candidate not yet proposed) | View | |
26391 | CVE-2007-3034 | Candidate | Integer overflow in the AttemptWrite function in Graphics Rendering Engine (GDI) on Microsoft Windows 2000 SP4, XP SP2, and Server 2003 SP1 allows remote attackers to execute arbitrary code via a crafted metafile (image) with a large record length value, which triggers a heap-based buffer overflow. | Assigned (20070605) | None (candidate not yet proposed) | View | |
91927 | CVE-2016-5108 | Candidate | Buffer overflow in the DecodeAdpcmImaQT function in modules/codec/adpcm.c in VideoLAN VLC media player before 2.2.4 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted QuickTime IMA file. | Assigned (20160527) | None (candidate not yet proposed) | View | |
26647 | CVE-2007-3290 | Candidate | categoria.php in LiveCMS 3.4 and earlier allows remote attackers to obtain sensitive information via a " (quote) character in the cid parameter, which reveals the path in a forced SQL error message. | Assigned (20070620) | None (candidate not yet proposed) | View | |
92183 | CVE-2016-5364 | Candidate | Cross-site scripting (XSS) vulnerability in manage_custom_field_edit_page.php in MantisBT 1.2.19 and earlier allows remote attackers to inject arbitrary web script or HTML via the return parameter. | Assigned (20160609) | None (candidate not yet proposed) | View |
Page 1892 of 20943, showing 5 records out of 104715 total, starting on record 9456, ending on 9460