CVE List

Id CVE No. Status Description Phase Votes Comments Actions
94231  CVE-2016-7411  Candidate  ext/standard/var_unserializer.re in PHP before 5.6.26 mishandles object-deserialization failures, which allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via an unserialize call that references a partially constructed object.  Assigned (20160909)  None (candidate not yet proposed)    View
28951  CVE-2007-5594  Candidate  Drupal 5.x before 5.3 does not apply its Drupal Forms API protection against the user deletion form, which allows remote attackers to delete users via a cross-site request forgery (CSRF) attack.  Assigned (20071019)  None (candidate not yet proposed)    View
94487  CVE-2016-7667  Candidate  An issue was discovered in certain Apple products. iOS before 10.2 is affected. macOS before 10.12.2 is affected. The issue involves the "CoreText" component. It allows remote attackers to cause a denial of service via a crafted string.  Assigned (20160909)  None (candidate not yet proposed)    View
29207  CVE-2007-5850  Candidate  Heap-based buffer overflow in Desktop Services in Apple Mac OS X 10.4.11 allows user-assisted attackers to execute arbitrary code via a directory with a crafted .DS_Store file.  Assigned (20071106)  None (candidate not yet proposed)    View
94743  CVE-2016-7923  Candidate  The ARP parser in tcpdump before 4.9.0 has a buffer overflow in print-arp.c:arp_print().  Assigned (20160909)  None (candidate not yet proposed)    View

Page 1896 of 20943, showing 5 records out of 104715 total, starting on record 9476, ending on 9480

Actions