CVE List

Id CVE No. Status Description Phase Votes Comments Actions
88319  CVE-2016-1500  Candidate  ownCloud Server before 7.0.12, 8.0.x before 8.0.10, 8.1.x before 8.1.5, and 8.2.x before 8.2.2, when the "file_versions" application is enabled, does not properly check the return value of getOwner, which allows remote authenticated users to read the files with names starting with ".v" and belonging to a sharing user by leveraging an incoming share.  Assigned (20160106)  None (candidate not yet proposed)    View
23039  CVE-2006-6935  Candidate  SQL injection vulnerability in the login component in Portix-PHP 0.4.2 allows remote attackers to execute arbitrary SQL commands via the username and passwd (password) fields.  Assigned (20070116)  None (candidate not yet proposed)    View
88575  CVE-2016-1756  Candidate  The kernel in Apple iOS before 9.3 and OS X before 10.11.4 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (NULL pointer dereference) via a crafted app.  Assigned (20160113)  None (candidate not yet proposed)    View
23295  CVE-2006-7191  Candidate  Untrusted search path vulnerability in lamdaemon.pl in LDAP Account Manager (LAM) before 1.0.0 allows local users to gain privileges via a modified PATH that points to a malicious rm program.  Assigned (20070402)  None (candidate not yet proposed)    View
88831  CVE-2016-2012  Candidate  HPE Network Node Manager i (NNMi) 9.20, 9.23, 9.24, 9.25, 10.00, and 10.01 allows remote attackers to bypass authentication via unspecified vectors.  Assigned (20160122)  None (candidate not yet proposed)    View

Page 20287 of 20943, showing 5 records out of 104715 total, starting on record 101431, ending on 101435

Actions