CVE List

Id CVE No. Status Description Phase Votes Comments Actions
26865  CVE-2007-3508  Candidate  ** DISPUTED ** Integer overflow in the process_envvars function in elf/rtld.c in glibc before 2.5-rc4 might allow local users to execute arbitrary code via a large LD_HWCAP_MASK environment variable value. NOTE: the glibc maintainers state that they do not believe that this issue is exploitable for code execution.  Assigned (20070702)  None (candidate not yet proposed)    View
92401  CVE-2016-5582  Candidate  Unspecified vulnerability in Oracle Java SE 6u121, 7u111, 8u102; and Java SE Embedded 8u101 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Hotspot, a different vulnerability than CVE-2016-5573.  Assigned (20160616)  None (candidate not yet proposed)    View
27121  CVE-2007-3764  Candidate  The Skinny channel driver (chan_skinny) in Asterisk before 1.2.22 and 1.4.x before 1.4.8, Business Edition before B.2.2.1, AsteriskNOW before beta7, Appliance Developer Kit before 0.5.0, and s800i before 1.0.2 allows remote attackers to cause a denial of service (crash) via a certain data length value in a crafted packet, which results in an "overly large memcpy."  Assigned (20070713)  None (candidate not yet proposed)    View
92657  CVE-2016-5837  Candidate  WordPress before 4.5.3 allows remote attackers to bypass intended access restrictions and remove a category attribute from a post via unspecified vectors.  Assigned (20160623)  None (candidate not yet proposed)    View
27377  CVE-2007-4020  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in login.php in AdMan 1.0.20051202 FF 3 patch and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) user and (2) pwd parameters.  Assigned (20070726)  None (candidate not yet proposed)    View

Page 19788 of 20943, showing 5 records out of 104715 total, starting on record 98936, ending on 98940

Actions