CVE List

Id CVE No. Status Description Phase Votes Comments Actions
37364  CVE-2008-7247  Candidate  sql/sql_table.cc in MySQL 5.0.x through 5.0.88, 5.1.x through 5.1.41, and 6.0 before 6.0.9-alpha, when the data home directory contains a symlink to a different filesystem, allows remote authenticated users to bypass intended access restrictions by calling CREATE TABLE with a (1) DATA DIRECTORY or (2) INDEX DIRECTORY argument referring to a subdirectory that requires following this symlink.  Assigned (20091125)  None (candidate not yet proposed)    View
102900  CVE-2017-6080  Candidate  An issue was discovered in Zammad before 1.0.4, 1.1.x before 1.1.3, and 1.2.x before 1.2.1, caused by lack of a protection mechanism involving HTTP Access-Control headers. To exploit the vulnerability, an attacker can send cross-domain requests directly to the REST API for users with a valid session cookie and receive the result.  Assigned (20170218)  None (candidate not yet proposed)    View
37620  CVE-2009-0185  Candidate  Heap-based buffer overflow in Apple QuickTime before 7.6.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via crafted MS ADPCM encoded audio data in an AVI movie file.  Assigned (20090120)  None (candidate not yet proposed)    View
103156  CVE-2017-6336  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170226)  None (candidate not yet proposed)    View
37876  CVE-2009-0441  Candidate  PHP remote file inclusion vulnerability in skin_shop/standard/2_view_body/body_default.php in TECHNOTE 7.2, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the shop_this_skin_path parameter, a different vector than CVE-2008-4138.  Assigned (20090205)  None (candidate not yet proposed)    View

Page 20045 of 20943, showing 5 records out of 104715 total, starting on record 100221, ending on 100225

Actions