CVE List

Id CVE No. Status Description Phase Votes Comments Actions
87042  CVE-2016-0746  Candidate  Use-after-free vulnerability in the resolver in nginx before 1.8.1 and 1.9.x before 1.9.10 allows remote attackers to cause a denial of service (worker process crash) or possibly have unspecified other impact via a crafted DNS response related to CNAME response processing.  Assigned (20151216)  None (candidate not yet proposed)    View
21762  CVE-2006-5658  Candidate  BlooMooWeb ActiveX control (AidemATL.dll) allows remote attackers to (1) download arbitrary files via a URL in the bstrUrl parameter to the BW_DownloadFile method, (2) execute arbitrary local files via a file path in the bstrParams parameter to the BW_LaunchGame method, and (3) delete arbitrary files via a file path in the filePath parameter to the BW_DeleteTempFile method.  Assigned (20061102)  None (candidate not yet proposed)    View
87298  CVE-2016-1000000  Candidate  Ipswitch WhatsUp Gold 16.4.1 WrFreeFormText.asp sUniqueID Parameter Blind SQL Injection  Assigned (20160519)  None (candidate not yet proposed)    View
22018  CVE-2006-5914  Candidate  SQL injection vulnerability in ls.php in SAMEDIA LandShop allows remote attackers to execute arbitrary SQL commands via the infield parameter. NOTE: the start, search_order, search_type, and search_area parameters are already covered by CVE-2005-4018.  Assigned (20061115)  None (candidate not yet proposed)    View
87554  CVE-2016-10058  Candidate  Memory leak in the ReadPSDLayers function in coders/psd.c in ImageMagick before 6.9.6-3 allows remote attackers to cause a denial of service (memory consumption) via a crafted image file.  Assigned (20161226)  None (candidate not yet proposed)    View

Page 192 of 20943, showing 5 records out of 104715 total, starting on record 956, ending on 960

Actions