CVE List

Id CVE No. Status Description Phase Votes Comments Actions
26609  CVE-2007-3252  Candidate  PortalApp stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for 8691.mdb, a different vector than CVE-2004-1786.  Assigned (20070618)  None (candidate not yet proposed)    View
92145  CVE-2016-5326  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20160607)  None (candidate not yet proposed)    View
26865  CVE-2007-3508  Candidate  ** DISPUTED ** Integer overflow in the process_envvars function in elf/rtld.c in glibc before 2.5-rc4 might allow local users to execute arbitrary code via a large LD_HWCAP_MASK environment variable value. NOTE: the glibc maintainers state that they do not believe that this issue is exploitable for code execution.  Assigned (20070702)  None (candidate not yet proposed)    View
92401  CVE-2016-5582  Candidate  Unspecified vulnerability in Oracle Java SE 6u121, 7u111, 8u102; and Java SE Embedded 8u101 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Hotspot, a different vulnerability than CVE-2016-5573.  Assigned (20160616)  None (candidate not yet proposed)    View
27121  CVE-2007-3764  Candidate  The Skinny channel driver (chan_skinny) in Asterisk before 1.2.22 and 1.4.x before 1.4.8, Business Edition before B.2.2.1, AsteriskNOW before beta7, Appliance Developer Kit before 0.5.0, and s800i before 1.0.2 allows remote attackers to cause a denial of service (crash) via a certain data length value in a crafted packet, which results in an "overly large memcpy."  Assigned (20070713)  None (candidate not yet proposed)    View

Page 19790 of 20943, showing 5 records out of 104715 total, starting on record 98946, ending on 98950

Actions