CVE List

Id CVE No. Status Description Phase Votes Comments Actions
89341  CVE-2016-2522  Candidate  The dissect_ber_constrained_bitstring function in epan/dissectors/packet-ber.c in the ASN.1 BER dissector in Wireshark 2.0.x before 2.0.2 does not verify that a certain length is nonzero, which allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted packet.  Assigned (20160220)  None (candidate not yet proposed)    View
24061  CVE-2007-0704  Candidate  PHP remote file inclusion vulnerability in install.php in Somery 0.4.6 allows remote attackers to execute arbitrary PHP code via a URL in the skindir parameter, a different vector than CVE-2006-4669. NOTE: the documentation says to remove install.php after installation.  Assigned (20070203)  None (candidate not yet proposed)    View
89597  CVE-2016-2778  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20160227)  None (candidate not yet proposed)    View
24317  CVE-2007-0960  Candidate  Unspecified vulnerability in Cisco PIX 500 and ASA 5500 Series Security Appliances 7.2.2, when configured to use the LOCAL authentication method, allows remote authenticated users to gain privileges via unspecified vectors.  Assigned (20070215)  None (candidate not yet proposed)    View
89853  CVE-2016-3034  Candidate  IBM AppScan Source uses a one-way hash without salt to encrypt highly sensitive information, which could allow a local attacker to decrypt information more easily.  Assigned (20160309)  None (candidate not yet proposed)    View

Page 20740 of 20943, showing 5 records out of 104715 total, starting on record 103696, ending on 103700

Actions