CVE List

Id CVE No. Status Description Phase Votes Comments Actions
20220  CVE-2006-4116  Candidate  Multiple stack-based buffer overflows in Lhaz before 1.32 allow user-assisted attackers to execute arbitrary code via a long filename in (1) an LHZ archive, when saving the filename during extraction; and (2) an LHZ archive with an invalid CRC checksum, when constructing an error message.  Assigned (20060814)  None (candidate not yet proposed)    View
85756  CVE-2015-8479  Candidate  Use-after-free vulnerability in the AudioOutputDevice::OnDeviceAuthorized function in media/audio/audio_output_device.cc in Google Chrome before 47.0.2526.73 allows attackers to cause a denial of service (heap memory corruption) or possibly have unspecified other impact by triggering access to an unauthorized audio output device.  Assigned (20151205)  None (candidate not yet proposed)    View
20476  CVE-2006-4372  Candidate  PHP remote file inclusion vulnerability in admin.lurm_constructor.php in the Lurm Constructor component (com_lurm_constructor) 0.6b and earlier for Mambo allows remote attackers to execute arbitrary PHP code via a URL in the lm_absolute_path parameter.  Assigned (20060825)  None (candidate not yet proposed)    View
86012  CVE-2015-8735  Candidate  The get_value function in epan/dissectors/packet-btatt.c in the Bluetooth Attribute (aka BT ATT) dissector in Wireshark 2.0.x before 2.0.1 uses an incorrect integer data type, which allows remote attackers to cause a denial of service (invalid write operation and application crash) via a crafted packet.  Assigned (20160103)  None (candidate not yet proposed)    View
20732  CVE-2006-4628  Candidate  Cross-site scripting (XSS) vulnerability in VCD-db before 0.983 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors when handling comments.  Assigned (20060908)  None (candidate not yet proposed)    View

Page 20655 of 20943, showing 5 records out of 104715 total, starting on record 103271, ending on 103275

Actions