CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
26872 | CVE-2007-3515 | Candidate | SQL injection vulnerability in view_event.php in TotalCalendar 2.402 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter. | Assigned (20070703) | None (candidate not yet proposed) | View | |
92408 | CVE-2016-5589 | Candidate | Unspecified vulnerability in the Oracle CRM Technical Foundation component in Oracle E-Business Suite 12.1.1 through 12.1.3 and 12.2.3 through 12.2.6 allows remote attackers to affect confidentiality and integrity via unknown vectors. | Assigned (20160616) | None (candidate not yet proposed) | View | |
27128 | CVE-2007-3771 | Candidate | Stack-based buffer overflow in the Internet E-mail Auto-Protect feature in Symantec AntiVirus Corporate Edition before 10.1, and Client Security before 3.1, allows local users to cause a denial of service (service crash) via a long (1) To, (2) From, or (3) Subject header in an outbound SMTP e-mail message. NOTE: the original vendor advisory referenced CVE-2006-3456, but this was an error. | Assigned (20070715) | None (candidate not yet proposed) | View | |
92664 | CVE-2016-5844 | Candidate | Integer overflow in the ISO parser in libarchive before 3.2.1 allows remote attackers to cause a denial of service (application crash) via a crafted ISO file. | Assigned (20160623) | None (candidate not yet proposed) | View | |
27384 | CVE-2007-4027 | Candidate | Buffer overflow in cli32 in Areca CLI 1.72.250 and earlier might allow local users to gain privileges via a long argument. NOTE: this program is not setuid by default, but there are some usage scenarios in which an administrator might make it setuid. | Assigned (20070726) | None (candidate not yet proposed) | View |
Page 20328 of 20943, showing 5 records out of 104715 total, starting on record 101636, ending on 101640