CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
33766 | CVE-2008-3649 | Candidate | SQL injection vulnerability in categorydetail.php in Article Friendly Standard allows remote attackers to execute arbitrary SQL commands via the Cat parameter. | Assigned (20080812) | None (candidate not yet proposed) | View | |
99302 | CVE-2017-2482 | Candidate | An issue was discovered in certain Apple products. iOS before 10.3 is affected. macOS before 10.12.4 is affected. tvOS before 10.2 is affected. watchOS before 3.2 is affected. The issue involves the "Kernel" component. A buffer overflow allows attackers to execute arbitrary code in a privileged context via a crafted app. | Assigned (20161201) | None (candidate not yet proposed) | View | |
34022 | CVE-2008-3905 | Candidate | resolv.rb in Ruby 1.8.5 and earlier, 1.8.6 before 1.8.6-p287, 1.8.7 before 1.8.7-p72, and 1.9 r18423 and earlier uses sequential transaction IDs and constant source ports for DNS requests, which makes it easier for remote attackers to spoof DNS responses, a different vulnerability than CVE-2008-1447. | Assigned (20080904) | None (candidate not yet proposed) | View | |
99558 | CVE-2017-2738 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20161201) | None (candidate not yet proposed) | View | |
34278 | CVE-2008-4161 | Candidate | SQL injection vulnerability in search_inv.php in Assetman 2.5b allows remote attackers to execute arbitrary SQL commands and conduct session fixation attacks via a combination of crafted order and order_by parameters in a search_all action. | Assigned (20080922) | None (candidate not yet proposed) | View |
Page 18950 of 20943, showing 5 records out of 104715 total, starting on record 94746, ending on 94750