CVE List

Id CVE No. Status Description Phase Votes Comments Actions
28665  CVE-2007-5308  Candidate  SQL injection vulnerability in galerie.php in PHP Homepage M (phpHPm) 1.0, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the id parameter in a show action.  Assigned (20071009)  None (candidate not yet proposed)    View
94201  CVE-2016-7381  Candidate  For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.00 and R375 before 375.63 contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgDdiEscape where a user input to index an array is not bounds checked, leading to denial of service or potential escalation of privileges.  Assigned (20160909)  None (candidate not yet proposed)    View
28921  CVE-2007-5564  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in NSSboard (formerly Simple PHP Forum) 6.1 allow remote attackers to inject arbitrary web script or HTML via (1) HTML tags when BBcode is disabled; or the (2) user, (3) email, or (4) Real Name fields in a profile.  Assigned (20071018)  None (candidate not yet proposed)    View
94457  CVE-2016-7637  Candidate  An issue was discovered in certain Apple products. iOS before 10.2 is affected. macOS before 10.12.2 is affected. watchOS before 3.1.3 is affected. The issue involves the "Kernel" component. It allows local users to gain privileges or cause a denial of service (memory corruption) via unspecified vectors.  Assigned (20160909)  None (candidate not yet proposed)    View
29177  CVE-2007-5820  Candidate  Directory traversal vulnerability in index.php in Ax Developer CMS (AxDCMS) 0.1.1 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the module parameter.  Assigned (20071105)  None (candidate not yet proposed)    View

Page 20408 of 20943, showing 5 records out of 104715 total, starting on record 102036, ending on 102040

Actions