CVE List

Id CVE No. Status Description Phase Votes Comments Actions
93442  CVE-2016-6622  Candidate  An issue was discovered in phpMyAdmin. An unauthenticated user is able to execute a denial-of-service (DoS) attack by forcing persistent connections when phpMyAdmin is running with $cfg["AllowArbitraryServer"]=true. All 4.6.x versions (prior to 4.6.4), 4.4.x versions (prior to 4.4.15.8), and 4.0.x versions (prior to 4.0.10.17) are affected.  Assigned (20160806)  None (candidate not yet proposed)    View
28162  CVE-2007-4805  Candidate  Directory traversal vulnerability in getgalldata.php in fuzzylime (cms) 3.0 and earlier allows remote attackers to include arbitrary local files via a .. (dot dot) in the p parameter.  Assigned (20070911)  None (candidate not yet proposed)    View
93698  CVE-2016-6878  Candidate  The Curve25519 code in botan before 1.11.31, on systems without a native 128-bit integer type, might allow attackers to have unspecified impact via vectors related to undefined behavior, as demonstrated on 32-bit ARM systems compiled by Clang.  Assigned (20160818)  None (candidate not yet proposed)    View
28418  CVE-2007-5061  Candidate  SQL injection vulnerability in mods/banners/navlist.php in Clansphere 2007.4 allows remote attackers to execute arbitrary SQL commands via the cat_id parameter to index.php in a banners action.  Assigned (20070924)  None (candidate not yet proposed)    View
93954  CVE-2016-7134  Candidate  ext/curl/interface.c in PHP 7.x before 7.0.10 does not work around a libcurl integer overflow, which allows remote attackers to cause a denial of service (allocation error and heap-based buffer overflow) or possibly have unspecified other impact via a long string that is mishandled in a curl_escape call.  Assigned (20160902)  None (candidate not yet proposed)    View

Page 202 of 20943, showing 5 records out of 104715 total, starting on record 1006, ending on 1010

Actions