CVE List

Id CVE No. Status Description Phase Votes Comments Actions
86005  CVE-2015-8728  Candidate  The Mobile Identity parser in (1) epan/dissectors/packet-ansi_a.c in the ANSI A dissector and (2) epan/dissectors/packet-gsm_a_common.c in the GSM A dissector in Wireshark 1.12.x before 1.12.9 and 2.0.x before 2.0.1 improperly uses the tvb_bcd_dig_to_wmem_packet_str function, which allows remote attackers to cause a denial of service (buffer overflow and application crash) via a crafted packet.  Assigned (20160103)  None (candidate not yet proposed)    View
20725  CVE-2006-4621  Candidate  PHP remote file inclusion vulnerability in settings.php in Pheap 1.2, and possibly earlier, allows remote attackers to execute arbitrary PHP code via a URL in the lpref parameter. NOTE: the provenance of this information is unknown; the details are obtained from third party information. The lib/config.php vector is already covered by CVE-2006-4531.  Assigned (20060906)  None (candidate not yet proposed)    View
86261  CVE-2015-8984  Candidate  The fnmatch function in the GNU C Library (aka glibc or libc6) before 2.22 might allow context-dependent attackers to cause a denial of service (application crash) via a malformed pattern, which triggers an out-of-bounds read.  Assigned (20170214)  None (candidate not yet proposed)    View
20981  CVE-2006-4877  Candidate  Variable overwrite vulnerability in David Bennett PHP-Post (PHPp) 1.0 and earlier allows remote attackers to overwrite arbitrary program variables via multiple vectors that use the extract function, as demonstrated by the table_prefix parameter in (1) index.php, (2) profile.php, and (3) header.php.  Assigned (20060919)  None (candidate not yet proposed)    View
86517  CVE-2016-0221  Candidate  Cross-site scripting (XSS) vulnerability in IBM Cognos TM1, as used in IBM Cognos Business Intelligence 10.2 before IF20, 10.2.1 before IF17, 10.2.1.1 before IF16, 10.2.2 before IF12, and 10.1.1 before IF19, allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL.  Assigned (20151208)  None (candidate not yet proposed)    View

Page 20092 of 20943, showing 5 records out of 104715 total, starting on record 100456, ending on 100460

Actions