CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
88319 | CVE-2016-1500 | Candidate | ownCloud Server before 7.0.12, 8.0.x before 8.0.10, 8.1.x before 8.1.5, and 8.2.x before 8.2.2, when the "file_versions" application is enabled, does not properly check the return value of getOwner, which allows remote authenticated users to read the files with names starting with ".v" and belonging to a sharing user by leveraging an incoming share. | Assigned (20160106) | None (candidate not yet proposed) | View | |
23039 | CVE-2006-6935 | Candidate | SQL injection vulnerability in the login component in Portix-PHP 0.4.2 allows remote attackers to execute arbitrary SQL commands via the username and passwd (password) fields. | Assigned (20070116) | None (candidate not yet proposed) | View | |
88575 | CVE-2016-1756 | Candidate | The kernel in Apple iOS before 9.3 and OS X before 10.11.4 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (NULL pointer dereference) via a crafted app. | Assigned (20160113) | None (candidate not yet proposed) | View | |
23295 | CVE-2006-7191 | Candidate | Untrusted search path vulnerability in lamdaemon.pl in LDAP Account Manager (LAM) before 1.0.0 allows local users to gain privileges via a modified PATH that points to a malicious rm program. | Assigned (20070402) | None (candidate not yet proposed) | View | |
88831 | CVE-2016-2012 | Candidate | HPE Network Node Manager i (NNMi) 9.20, 9.23, 9.24, 9.25, 10.00, and 10.01 allows remote attackers to bypass authentication via unspecified vectors. | Assigned (20160122) | None (candidate not yet proposed) | View |
Page 20287 of 20943, showing 5 records out of 104715 total, starting on record 101431, ending on 101435