CVE List

Id CVE No. Status Description Phase Votes Comments Actions
94611  CVE-2016-7791  Candidate  Exponent CMS 2.3.9 suffers from a remote code execution vulnerability in /install/index.php. An attacker can upload an evil "exploit.tar.gz" file to the website, then extract it by visiting "/install/index.php?install_sample=../../files/exploit", which leads to arbitrary code execution.  Assigned (20160909)  None (candidate not yet proposed)    View
94612  CVE-2016-7792  Candidate  Ubiquiti Networks UniFi 5.2.7 does not restrict access to the database, which allows remote attackers to modify the database by directly connecting to it.  Assigned (20160909)  None (candidate not yet proposed)    View
94613  CVE-2016-7793  Candidate  sociomantic-tsunami git-hub before 0.10.3 allows remote attackers to execute arbitrary code via a crafted repository URL.  Assigned (20160909)  None (candidate not yet proposed)    View
94614  CVE-2016-7794  Candidate  sociomantic-tsunami git-hub before 0.10.3 allows remote attackers to execute arbitrary code via a crafted repository name.  Assigned (20160909)  None (candidate not yet proposed)    View
94615  CVE-2016-7795  Candidate  The manager_invoke_notify_message function in systemd 231 and earlier allows local users to cause a denial of service (assertion failure and PID 1 hang) via a zero-length message received over a notify socket.  Assigned (20160909)  None (candidate not yet proposed)    View

Page 18923 of 20943, showing 5 records out of 104715 total, starting on record 94611, ending on 94615

Actions