CVE List

Id CVE No. Status Description Phase Votes Comments Actions
95211  CVE-2016-8391  Candidate  An elevation of privilege vulnerability in the Qualcomm sound driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-31253255. References: QC-CR#1072166.  Assigned (20161005)  None (candidate not yet proposed)    View
29931  CVE-2007-6574  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in Dokeos 1.8.4 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the origin parameter to work/work.php in a display_upload_form action, or the forum parameter to (2) forum/viewforum.php or (3) forum/viewthread.php.  Assigned (20071228)  None (candidate not yet proposed)    View
95467  CVE-2016-8647  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20161012)  None (candidate not yet proposed)    View
30187  CVE-2008-0070  Candidate  Integer overflow in Orb Networks Orb 2.00.1014 and Winamp Remote BETA allows remote attackers to execute arbitrary code via an RPC request that specifies a large number of array dimensions, which triggers a heap-based buffer overflow.  Assigned (20080103)  None (candidate not yet proposed)    View
95723  CVE-2016-8903  Candidate  SQL injection vulnerability in the "Site Browser > Templates pages" screen in dotCMS before 3.3.1 allows remote authenticated attackers to execute arbitrary SQL commands via the orderby parameter.  Assigned (20161024)  None (candidate not yet proposed)    View

Page 19306 of 20943, showing 5 records out of 104715 total, starting on record 96526, ending on 96530

Actions