CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
26865 | CVE-2007-3508 | Candidate | ** DISPUTED ** Integer overflow in the process_envvars function in elf/rtld.c in glibc before 2.5-rc4 might allow local users to execute arbitrary code via a large LD_HWCAP_MASK environment variable value. NOTE: the glibc maintainers state that they do not believe that this issue is exploitable for code execution. | Assigned (20070702) | None (candidate not yet proposed) | View | |
92401 | CVE-2016-5582 | Candidate | Unspecified vulnerability in Oracle Java SE 6u121, 7u111, 8u102; and Java SE Embedded 8u101 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Hotspot, a different vulnerability than CVE-2016-5573. | Assigned (20160616) | None (candidate not yet proposed) | View | |
27121 | CVE-2007-3764 | Candidate | The Skinny channel driver (chan_skinny) in Asterisk before 1.2.22 and 1.4.x before 1.4.8, Business Edition before B.2.2.1, AsteriskNOW before beta7, Appliance Developer Kit before 0.5.0, and s800i before 1.0.2 allows remote attackers to cause a denial of service (crash) via a certain data length value in a crafted packet, which results in an "overly large memcpy." | Assigned (20070713) | None (candidate not yet proposed) | View | |
92657 | CVE-2016-5837 | Candidate | WordPress before 4.5.3 allows remote attackers to bypass intended access restrictions and remove a category attribute from a post via unspecified vectors. | Assigned (20160623) | None (candidate not yet proposed) | View | |
27377 | CVE-2007-4020 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in login.php in AdMan 1.0.20051202 FF 3 patch and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) user and (2) pwd parameters. | Assigned (20070726) | None (candidate not yet proposed) | View |
Page 19788 of 20943, showing 5 records out of 104715 total, starting on record 98936, ending on 98940