CVE List

Id CVE No. Status Description Phase Votes Comments Actions
89852  CVE-2016-3033  Candidate  IBM AppScan Source 8.7 through 9.0.3.3 allows remote authenticated users to read arbitrary files or cause a denial of service (memory consumption) via an XML document containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.  Assigned (20160309)  None (candidate not yet proposed)    View
24572  CVE-2007-1215  Candidate  Buffer overflow in the Graphics Device Interface (GDI) in Microsoft Windows 2000 SP4; XP SP2; Server 2003 Gold, SP1, and SP2; and Vista allows local users to gain privileges via certain "color-related parameters" in crafted images.  Assigned (20070302)  None (candidate not yet proposed)    View
90108  CVE-2016-3289  Candidate  Microsoft Internet Explorer 11 and Edge allow remote attackers to execute arbitrary code via a crafted web page, aka "Microsoft Browser Memory Corruption Vulnerability," a different vulnerability than CVE-2016-3322.  Assigned (20160315)  None (candidate not yet proposed)    View
24828  CVE-2007-1471  Candidate  admin/default.asp in Orion-Blog 2.0 allows remote attackers to bypass authentication controls and gain privileges via a direct URL request for admin/AdminBlogNewsEdit.asp.  Assigned (20070316)  None (candidate not yet proposed)    View
90364  CVE-2016-3545  Candidate  Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Suite 12.1.3, 12.2.3, 12.2.4, and 12.2.5 allows remote attackers to affect confidentiality via vectors related to Web based help screens.  Assigned (20160317)  None (candidate not yet proposed)    View

Page 20051 of 20943, showing 5 records out of 104715 total, starting on record 100251, ending on 100255

Actions