CVE List

Id CVE No. Status Description Phase Votes Comments Actions
22786  CVE-2006-6682  Candidate  Pedro Lineu Orso chetcpasswd 2.3.3 provides a different error message when a request with a valid username fails, compared to a request with an invalid username, which allows remote attackers to determine valid usernames on the system.  Assigned (20061221)  None (candidate not yet proposed)    View
88322  CVE-2016-1503  Candidate  dhcpcd before 6.10.0, as used in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 and other products, mismanages option lengths, which allows remote attackers to execute arbitrary code or cause a denial of service (heap-based buffer overflow) via a malformed DHCP response, aka internal bug 26461634.  Assigned (20160107)  None (candidate not yet proposed)    View
23042  CVE-2006-6938  Candidate  Directory traversal vulnerability in includes/common.php in NitroTech 0.0.3a, as distributed before 2006, allows remote attackers to include arbitrary files via ".." sequences in the root parameter.  Assigned (20070116)  None (candidate not yet proposed)    View
88578  CVE-2016-1759  Candidate  The kernel in Apple OS X before 10.11.4 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.  Assigned (20160113)  None (candidate not yet proposed)    View
23298  CVE-2006-7194  Candidate  PHP remote file inclusion vulnerability in modules/Mysqlfinder/MysqlfinderAdmin.php in Agora 1.4 RC1, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the _SESSION[PATH_COMPOSANT] parameter.  Assigned (20070417)  None (candidate not yet proposed)    View

Page 197 of 20943, showing 5 records out of 104715 total, starting on record 981, ending on 985

Actions