CVE List

Id CVE No. Status Description Phase Votes Comments Actions
28412  CVE-2007-5055  Candidate  Multiple directory traversal vulnerabilities in iziContents 1 RC6 and earlier allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in (1) the admin_home parameter to modules/poll/poll_summary.php or (2) the rootdp parameter to include/db.php.  Assigned (20070924)  None (candidate not yet proposed)    View
93948  CVE-2016-7128  Candidate  The exif_process_IFD_in_TIFF function in ext/exif/exif.c in PHP before 5.6.25 and 7.x before 7.0.10 mishandles the case of a thumbnail offset that exceeds the file size, which allows remote attackers to obtain sensitive information from process memory via a crafted TIFF image.  Assigned (20160902)  None (candidate not yet proposed)    View
28668  CVE-2007-5311  Candidate  Directory traversal vulnerability in backend/admin-functions.php in TorrentTrader Classic Edition 1.07 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the ss_uri parameter.  Assigned (20071009)  None (candidate not yet proposed)    View
94204  CVE-2016-7384  Candidate  For the NVIDIA Quadro, NVS, and GeForce products, NVIDIA Windows GPU Display Driver R340 before 342.00 and R375 before 375.63 contains a vulnerability in the kernel mode layer (nvlddmkm.sys) where unchecked input/output lengths in UVMLiteController Device IO Control handling may lead to denial of service or potential escalation of privileges.  Assigned (20160909)  None (candidate not yet proposed)    View
28924  CVE-2007-5567  Candidate  PHP remote file inclusion vulnerability in _lib/fckeditor/upload_config.php in Galmeta Post 0.11 allows remote attackers to execute arbitrary PHP code via a URL in the DDS parameter.  Assigned (20071018)  None (candidate not yet proposed)    View

Page 20665 of 20943, showing 5 records out of 104715 total, starting on record 103321, ending on 103325

Actions