CVE List

Id CVE No. Status Description Phase Votes Comments Actions
26872  CVE-2007-3515  Candidate  SQL injection vulnerability in view_event.php in TotalCalendar 2.402 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.  Assigned (20070703)  None (candidate not yet proposed)    View
92408  CVE-2016-5589  Candidate  Unspecified vulnerability in the Oracle CRM Technical Foundation component in Oracle E-Business Suite 12.1.1 through 12.1.3 and 12.2.3 through 12.2.6 allows remote attackers to affect confidentiality and integrity via unknown vectors.  Assigned (20160616)  None (candidate not yet proposed)    View
27128  CVE-2007-3771  Candidate  Stack-based buffer overflow in the Internet E-mail Auto-Protect feature in Symantec AntiVirus Corporate Edition before 10.1, and Client Security before 3.1, allows local users to cause a denial of service (service crash) via a long (1) To, (2) From, or (3) Subject header in an outbound SMTP e-mail message. NOTE: the original vendor advisory referenced CVE-2006-3456, but this was an error.  Assigned (20070715)  None (candidate not yet proposed)    View
92664  CVE-2016-5844  Candidate  Integer overflow in the ISO parser in libarchive before 3.2.1 allows remote attackers to cause a denial of service (application crash) via a crafted ISO file.  Assigned (20160623)  None (candidate not yet proposed)    View
27384  CVE-2007-4027  Candidate  Buffer overflow in cli32 in Areca CLI 1.72.250 and earlier might allow local users to gain privileges via a long argument. NOTE: this program is not setuid by default, but there are some usage scenarios in which an administrator might make it setuid.  Assigned (20070726)  None (candidate not yet proposed)    View

Page 20328 of 20943, showing 5 records out of 104715 total, starting on record 101636, ending on 101640

Actions