CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
94231 | CVE-2016-7411 | Candidate | ext/standard/var_unserializer.re in PHP before 5.6.26 mishandles object-deserialization failures, which allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via an unserialize call that references a partially constructed object. | Assigned (20160909) | None (candidate not yet proposed) | View | |
28951 | CVE-2007-5594 | Candidate | Drupal 5.x before 5.3 does not apply its Drupal Forms API protection against the user deletion form, which allows remote attackers to delete users via a cross-site request forgery (CSRF) attack. | Assigned (20071019) | None (candidate not yet proposed) | View | |
94487 | CVE-2016-7667 | Candidate | An issue was discovered in certain Apple products. iOS before 10.2 is affected. macOS before 10.12.2 is affected. The issue involves the "CoreText" component. It allows remote attackers to cause a denial of service via a crafted string. | Assigned (20160909) | None (candidate not yet proposed) | View | |
29207 | CVE-2007-5850 | Candidate | Heap-based buffer overflow in Desktop Services in Apple Mac OS X 10.4.11 allows user-assisted attackers to execute arbitrary code via a directory with a crafted .DS_Store file. | Assigned (20071106) | None (candidate not yet proposed) | View | |
94743 | CVE-2016-7923 | Candidate | The ARP parser in tcpdump before 4.9.0 has a buffer overflow in print-arp.c:arp_print(). | Assigned (20160909) | None (candidate not yet proposed) | View |
Page 1896 of 20943, showing 5 records out of 104715 total, starting on record 9476, ending on 9480