CVE List

Id CVE No. Status Description Phase Votes Comments Actions
90114  CVE-2016-3295  Candidate  Microsoft Internet Explorer 10 and 11 and Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Microsoft Browser Memory Corruption Vulnerability."  Assigned (20160315)  None (candidate not yet proposed)    View
24834  CVE-2007-1477  Candidate  ** DISPUTED ** Directory traversal vulnerability in index.php in PHP Point Of Sale for osCommerce 1.1 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the cfg_language parameter. NOTE: this issue has been disputed by CVE, since the cfg_language variable is configured upon proper product installation.  Assigned (20070316)  None (candidate not yet proposed)    View
90370  CVE-2016-3551  Candidate  Unspecified vulnerability in the Oracle Web Services component in Oracle Fusion Middleware 11.1.1.7.0, 11.1.1.9.0, 12.1.3.0.0, and 12.2.1.0.0 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to JAXWS Web Services Stack.  Assigned (20160317)  None (candidate not yet proposed)    View
25090  CVE-2007-1733  Candidate  Buffer overflow in InterVations NaviCOPA HTTP Server 2.01 allows remote attackers to execute arbitrary code via a long (1) /cgi-bin/ or (2) /cgi/ pathname in an HTTP GET request, probably a different issue than CVE-2006-5112.  Assigned (20070328)  None (candidate not yet proposed)    View
90626  CVE-2016-3807  Candidate  The serial peripheral interface driver in Android before 2016-07-05 on Nexus 5X and 6P devices allows attackers to gain privileges via a crafted application, aka internal bug 28402196.  Assigned (20160330)  None (candidate not yet proposed)    View

Page 200 of 20943, showing 5 records out of 104715 total, starting on record 996, ending on 1000

Actions