CVE List

Id CVE No. Status Description Phase Votes Comments Actions
89085  CVE-2016-2266  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2016. Notes: none.  Assigned (20160208)  None (candidate not yet proposed)    View
23805  CVE-2007-0448  Candidate  The fopen function in PHP 5.2.0 does not properly handle invalid URI handlers, which allows context-dependent attackers to bypass safe_mode restrictions and read arbitrary files via a file path specified with an invalid URI, as demonstrated via the srpath URI.  Assigned (20070123)  None (candidate not yet proposed)    View
89341  CVE-2016-2522  Candidate  The dissect_ber_constrained_bitstring function in epan/dissectors/packet-ber.c in the ASN.1 BER dissector in Wireshark 2.0.x before 2.0.2 does not verify that a certain length is nonzero, which allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted packet.  Assigned (20160220)  None (candidate not yet proposed)    View
24061  CVE-2007-0704  Candidate  PHP remote file inclusion vulnerability in install.php in Somery 0.4.6 allows remote attackers to execute arbitrary PHP code via a URL in the skindir parameter, a different vector than CVE-2006-4669. NOTE: the documentation says to remove install.php after installation.  Assigned (20070203)  None (candidate not yet proposed)    View
89597  CVE-2016-2778  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20160227)  None (candidate not yet proposed)    View

Page 20738 of 20943, showing 5 records out of 104715 total, starting on record 103686, ending on 103690

Actions