CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
38907 | CVE-2009-1472 | Candidate | The Java client program for the ATEN KH1516i IP KVM switch with firmware 1.0.063 and the KN9116 IP KVM switch with firmware 1.1.104 has a hardcoded AES encryption key, which makes it easier for man-in-the-middle attackers to (1) execute arbitrary Java code, or (2) gain access to machines connected to the switch, by hijacking a session. | Assigned (20090428) | None (candidate not yet proposed) | View | |
104443 | CVE-2017-7623 | Candidate | The iwmiffr_convert_row32 function in imagew-miff.c in libimageworsener.a in ImageWorsener 1.3.0 allows remote attackers to cause a denial of service (heap-based buffer over-read) via a crafted file. | Assigned (20170410) | None (candidate not yet proposed) | View | |
39163 | CVE-2009-1728 | Candidate | Stack-based buffer overflow in Image RAW in Apple Mac OS X 10.5 before 10.5.8, and 10.4 before Digital Camera RAW Compatibility Update 2.6, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted Canon RAW image. | Assigned (20090520) | None (candidate not yet proposed) | View | |
104699 | CVE-2017-7879 | Candidate | SQL Injection vulnerability in flatCore version 1.4.6 allows an attacker to read the content database. | Assigned (20170414) | None (candidate not yet proposed) | View | |
39419 | CVE-2009-1984 | Candidate | Unspecified vulnerability in the Application Install component in Oracle E-Business Suite 11.5.10.2, 12.0.6, and 12.1 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to the Patch Administrator. | Assigned (20090608) | None (candidate not yet proposed) | View |
Page 20578 of 20943, showing 5 records out of 104715 total, starting on record 102886, ending on 102890