CVE List

Id CVE No. Status Description Phase Votes Comments Actions
29938  CVE-2007-6581  Candidate  Multiple directory traversal vulnerabilities in Social Engine 2.0 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the global_lang parameter to (1) header_album.php, (2) header_blog.php, or (3) header_group.php; or (4) admin_header_album.php, (5) admin_header_blog.php, or (6) admin_header_group.php in admin/.  Assigned (20071228)  None (candidate not yet proposed)    View
95474  CVE-2016-8654  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20161012)  None (candidate not yet proposed)    View
30194  CVE-2008-0077  Candidate  Use-after-free vulnerability in Microsoft Internet Explorer 6 SP1, 6 SP2, and and 7 allows remote attackers to execute arbitrary code by assigning malformed values to certain properties, as demonstrated using the by property of an animateMotion SVG element, aka "Property Memory Corruption Vulnerability."  Assigned (20080103)  None (candidate not yet proposed)    View
95730  CVE-2016-8910  Candidate  The rtl8139_cplus_transmit function in hw/net/rtl8139.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (infinite loop and CPU consumption) by leveraging failure to limit the ring descriptor count.  Assigned (20161024)  None (candidate not yet proposed)    View
30450  CVE-2008-0333  Candidate  Directory traversal vulnerability in download_view_attachment.aspx in AfterLogic MailBee WebMail Pro 4.1 for ASP.NET allows remote attackers to read arbitrary files via a .. (dot dot) in the temp_filename parameter.  Assigned (20080117)  None (candidate not yet proposed)    View

Page 19870 of 20943, showing 5 records out of 104715 total, starting on record 99346, ending on 99350

Actions