CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
91376 | CVE-2016-4557 | Candidate | The replace_map_fd_with_map_ptr function in kernel/bpf/verifier.c in the Linux kernel before 4.5.5 does not properly maintain an fd data structure, which allows local users to gain privileges or cause a denial of service (use-after-free) via crafted BPF instructions that reference an incorrect file descriptor. | Assigned (20160506) | None (candidate not yet proposed) | View | |
26096 | CVE-2007-2739 | Candidate | Cross-site scripting (XSS) vulnerability in xajax before 0.2.5 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | Assigned (20070517) | None (candidate not yet proposed) | View | |
91632 | CVE-2016-4813 | Candidate | NetCommons 2.4.2.1 and earlier allows remote authenticated secretariat (aka CLERK) users to gain privileges by creating a SYSTEM_ADMIN account. | Assigned (20160517) | None (candidate not yet proposed) | View | |
26352 | CVE-2007-2995 | Candidate | Unspecified vulnerability in sysmgt.websm.rte in IBM AIX 5.2.0 and 5.3.0 has unknown impact and attack vectors. | Assigned (20070604) | None (candidate not yet proposed) | View | |
91888 | CVE-2016-5069 | Candidate | Sierra Wireless GX 440 devices with ALEOS firmware 4.3.2 use guessable session tokens, which are in the URL. | Assigned (20160526) | None (candidate not yet proposed) | View |
Page 19098 of 20943, showing 5 records out of 104715 total, starting on record 95486, ending on 95490