CVE List

Id CVE No. Status Description Phase Votes Comments Actions
26878  CVE-2007-3521  Candidate  SQL injection vulnerability in ArcadeBuilder Game Portal Manager 1.7 allows remote attackers to execute arbitrary SQL commands via a usercookie cookie.  Assigned (20070703)  None (candidate not yet proposed)    View
92414  CVE-2016-5595  Candidate  Unspecified vulnerability in the Oracle Customer Interaction History component in Oracle E-Business Suite 12.1.1 through 12.1.3, 12.2.3, and 12.2.4 allows remote attackers to affect confidentiality and integrity via unknown vectors, a different vulnerability than CVE-2016-5592.  Assigned (20160616)  None (candidate not yet proposed)    View
27134  CVE-2007-3777  Candidate  avg7core.sys 7.5.0.444 in Grisoft AVG Anti-Virus 7.5.448 and Free Edition 7.5.446, provides an internal function that copies data to an arbitrary address, which allows local users to gain privileges via arbitrary address arguments to a function provided by the 0x5348E004 IOCTL for the generic DeviceIoControl handler.  Assigned (20070715)  None (candidate not yet proposed)    View
92670  CVE-2016-5850  Candidate  Cross-site scripting (XSS) vulnerability in the volume backup service module in Huawei Public Cloud Solution before 1.0.5 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20160628)  None (candidate not yet proposed)    View
27390  CVE-2007-4033  Candidate  Buffer overflow in the intT1_EnvGetCompletePath function in lib/t1lib/t1env.c in t1lib 5.1.1 allows context-dependent attackers to execute arbitrary code via a long FileName parameter. NOTE: this issue was originally reported to be in the imagepsloadfont function in php_gd2.dll in the gd (PHP_GD2) extension in PHP 5.2.3.  Assigned (20070727)  None (candidate not yet proposed)    View

Page 19667 of 20943, showing 5 records out of 104715 total, starting on record 98331, ending on 98335

Actions