CVE List

Id CVE No. Status Description Phase Votes Comments Actions
87528  CVE-2016-10034  Candidate  The setFrom function in the Sendmail adapter in the zend-mail component before 2.4.11, 2.5.x, 2.6.x, and 2.7.x before 2.7.2, and Zend Framework before 2.4.11 might allow remote attackers to pass extra parameters to the mail command and consequently execute arbitrary code via a " (backslash double quote) in a crafted e-mail address.  Assigned (20161223)  None (candidate not yet proposed)    View
22248  CVE-2006-6144  Candidate  The "mechglue" abstraction interface of the GSS-API library for Kerberos 5 1.5 through 1.5.1, as used in Kerberos administration daemon (kadmind) and other products that use this library, allows remote attackers to cause a denial of service (crash) via unspecified vectors that cause mechglue to free uninitialized pointers.  Assigned (20061128)  None (candidate not yet proposed)    View
87784  CVE-2016-10267  Candidate  LibTIFF 4.0.7 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted TIFF image, related to libtiff/tif_ojpeg.c:816:8.  Assigned (20170324)  None (candidate not yet proposed)    View
22504  CVE-2006-6400  Candidate  Buffer overflow in JustSystems Hanako 2004 through 2006, Hanako viewer 1.x, Ichitaro 2004, Ichitaro 2005, Ichitaro Lite2, Ichitaro viewer 4.x, and Sanshiro 2005 allows remote attackers to execute arbitrary code via the (1) Keyword and (2) Title fields, related to string length fields.  Assigned (20061209)  None (candidate not yet proposed)    View
88040  CVE-2016-1221  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20151226)  None (candidate not yet proposed)    View

Page 19086 of 20943, showing 5 records out of 104715 total, starting on record 95426, ending on 95430

Actions