CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
30962 | CVE-2008-0845 | Candidate | SQL injection vulnerability in wp-people-popup.php in Dean Logan WP-People plugin 1.6.1 for WordPress allows remote attackers to execute arbitrary SQL commands via the person parameter. | Assigned (20080220) | None (candidate not yet proposed) | View | |
96498 | CVE-2016-9678 | Candidate | Use-after-free vulnerability in Citrix Provisioning Services before 7.12 allows attackers to execute arbitrary code via unspecified vectors. | Assigned (20161130) | None (candidate not yet proposed) | View | |
31218 | CVE-2008-1101 | Candidate | Buffer overflow in kvdocve.dll in the KeyView document viewing engine in Autonomy (formerly Verity) KeyView, as used by IBM Lotus Notes 7.0.2 and 7.0.3, allows remote attackers to execute arbitrary code via a long pathname, as demonstrated by a long SRC attribute of an IMG element in an HTML document. | Assigned (20080229) | None (candidate not yet proposed) | View | |
96754 | CVE-2016-9934 | Candidate | ext/wddx/wddx.c in PHP before 5.6.28 and 7.x before 7.0.13 allows remote attackers to cause a denial of service (NULL pointer dereference) via crafted serialized data in a wddxPacket XML document, as demonstrated by a PDORow string. | Assigned (20161212) | None (candidate not yet proposed) | View | |
31474 | CVE-2008-1357 | Candidate | Format string vulnerability in the logDetail function of applib.dll in McAfee Common Management Agent (CMA) 3.6.0.574 (Patch 3) and earlier, as used in ePolicy Orchestrator 4.0.0 build 1015, allows remote attackers to cause a denial of service (crash) or execute arbitrary code via format string specifiers in a sender field in an AgentWakeup request to UDP port 8082. NOTE: this issue only exists when the debug level is 8. | Assigned (20080317) | None (candidate not yet proposed) | View |
Page 19876 of 20943, showing 5 records out of 104715 total, starting on record 99376, ending on 99380