CVE List

Id CVE No. Status Description Phase Votes Comments Actions
38130  CVE-2009-0695  Candidate  hagent.exe in Wyse Device Manager (WDM) 4.7.x does not require authentication for commands, which allows remote attackers to obtain management access via a crafted query, as demonstrated by a V52 query that triggers a power-off action.  Assigned (20090222)  None (candidate not yet proposed)    View
103666  CVE-2017-6846  Candidate  The GraphicsStack::TGraphicsStackElement::SetNonStrokingColorSpace function in graphicsstack.h in PoDoFo 0.9.4 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted file.  Assigned (20170312)  None (candidate not yet proposed)    View
38386  CVE-2009-0951  Candidate  Heap-based buffer overflow in Apple QuickTime before 7.6.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted FLC compression file.  Assigned (20090318)  None (candidate not yet proposed)    View
103922  CVE-2017-7102  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170317)  None (candidate not yet proposed)    View
38642  CVE-2009-1207  Candidate  Race condition in the dircmp script in Sun Solaris 8 through 10, and OpenSolaris snv_01 through snv_111, allows local users to overwrite arbitrary files, probably involving a symlink attack on temporary files.  Assigned (20090331)  None (candidate not yet proposed)    View

Page 19880 of 20943, showing 5 records out of 104715 total, starting on record 99396, ending on 99400

Actions