CVE List

Id CVE No. Status Description Phase Votes Comments Actions
30962  CVE-2008-0845  Candidate  SQL injection vulnerability in wp-people-popup.php in Dean Logan WP-People plugin 1.6.1 for WordPress allows remote attackers to execute arbitrary SQL commands via the person parameter.  Assigned (20080220)  None (candidate not yet proposed)    View
96498  CVE-2016-9678  Candidate  Use-after-free vulnerability in Citrix Provisioning Services before 7.12 allows attackers to execute arbitrary code via unspecified vectors.  Assigned (20161130)  None (candidate not yet proposed)    View
31218  CVE-2008-1101  Candidate  Buffer overflow in kvdocve.dll in the KeyView document viewing engine in Autonomy (formerly Verity) KeyView, as used by IBM Lotus Notes 7.0.2 and 7.0.3, allows remote attackers to execute arbitrary code via a long pathname, as demonstrated by a long SRC attribute of an IMG element in an HTML document.  Assigned (20080229)  None (candidate not yet proposed)    View
96754  CVE-2016-9934  Candidate  ext/wddx/wddx.c in PHP before 5.6.28 and 7.x before 7.0.13 allows remote attackers to cause a denial of service (NULL pointer dereference) via crafted serialized data in a wddxPacket XML document, as demonstrated by a PDORow string.  Assigned (20161212)  None (candidate not yet proposed)    View
31474  CVE-2008-1357  Candidate  Format string vulnerability in the logDetail function of applib.dll in McAfee Common Management Agent (CMA) 3.6.0.574 (Patch 3) and earlier, as used in ePolicy Orchestrator 4.0.0 build 1015, allows remote attackers to cause a denial of service (crash) or execute arbitrary code via format string specifiers in a sender field in an AgentWakeup request to UDP port 8082. NOTE: this issue only exists when the debug level is 8.  Assigned (20080317)  None (candidate not yet proposed)    View

Page 19876 of 20943, showing 5 records out of 104715 total, starting on record 99376, ending on 99380

Actions