CVE List

Id CVE No. Status Description Phase Votes Comments Actions
93433  CVE-2016-6613  Candidate  An issue was discovered in phpMyAdmin. A user can specially craft a symlink on disk, to a file which phpMyAdmin is permitted to read but the user is not, which phpMyAdmin will then expose to the user. All 4.6.x versions (prior to 4.6.4), 4.4.x versions (prior to 4.4.15.8), and 4.0.x versions (prior to 4.0.10.17) are affected.  Assigned (20160806)  None (candidate not yet proposed)    View
28153  CVE-2007-4796  Candidate  Buffer overflow in uucp in bos.net.uucp in IBM AIX 5.2 and 5.3 allows local users to gain privileges via unspecified vectors.  Assigned (20070910)  None (candidate not yet proposed)    View
93689  CVE-2016-6869  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20160818)  None (candidate not yet proposed)    View
28409  CVE-2007-5052  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in index.php in Vigile CMS 1.8 allow remote attackers to inject arbitrary web script or HTML via a request to the wiki module with (1) the title parameter or (2) a "title=" sequence in the PATH_INFO, or a request to the download module with (3) the cat parameter or (4) a "cat=" sequence in the PATH_INFO.  Assigned (20070923)  None (candidate not yet proposed)    View
93945  CVE-2016-7125  Candidate  ext/session/session.c in PHP before 5.6.25 and 7.x before 7.0.10 skips invalid session names in a way that triggers incorrect parsing, which allows remote attackers to inject arbitrary-type session data by leveraging control of a session name, as demonstrated by object injection.  Assigned (20160902)  None (candidate not yet proposed)    View

Page 20407 of 20943, showing 5 records out of 104715 total, starting on record 102031, ending on 102035

Actions