CVE List

Id CVE No. Status Description Phase Votes Comments Actions
29695  CVE-2007-6338  Candidate  SQL injection vulnerability in userlogin.jsp in Trivantis CourseMill Enterprise Learning Management System 4.1 SP4 allows remote attackers to execute arbitrary SQL commands via the user parameter (username field). NOTE: some of these details are obtained from third party information.  Assigned (20071213)  None (candidate not yet proposed)    View
95231  CVE-2016-8411  Candidate  Buffer overflow vulnerability while processing QMI QOS TLVs. Product: Android. Versions: versions that have qmi_qos_srvc.c. Android ID: 31805216. References: QC CR#912775.  Assigned (20161005)  None (candidate not yet proposed)    View
29951  CVE-2007-6594  Candidate  IBM Lotus Notes 8 for Linux before 8.0.1 uses (1) unspecified weak permissions for the installation kit obtained through a Notes 8 download and (2) 0777 permissions for the installdata file that is created by setup.sh, which allows local users to gain privileges via a Trojan horse file.  Assigned (20071228)  None (candidate not yet proposed)    View
95487  CVE-2016-8667  Candidate  The rc4030_write function in hw/dma/rc4030.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (divide-by-zero error and QEMU process crash) via a large interval timer reload value.  Assigned (20161015)  None (candidate not yet proposed)    View
30207  CVE-2008-0090  Candidate  A certain ActiveX control in npUpload.dll in DivX Player 6.6.0 allows remote attackers to cause a denial of service (Internet Explorer 7 crash) via a long argument to the SetPassword method.  Assigned (20080103)  None (candidate not yet proposed)    View

Page 20872 of 20943, showing 5 records out of 104715 total, starting on record 104356, ending on 104360

Actions