CVE List

Id CVE No. Status Description Phase Votes Comments Actions
92415  CVE-2016-5596  Candidate  Unspecified vulnerability in the Oracle CRM Technical Foundation component in Oracle E-Business Suite 12.1.1 through 12.1.3 and 12.2.3 through 12.2.6 allows remote authenticated users to affect confidentiality via unknown vectors.  Assigned (20160616)  None (candidate not yet proposed)    View
27135  CVE-2007-3778  Candidate  The G/PGP (GPG) Plugin 2.0, and 2.1dev before 20060912, for Squirrelmail allows remote attackers to execute arbitrary commands via shell metacharacters in the messageSignedText parameter to the gpg_check_sign_pgp_mime function in gpg_hook_functions.php. NOTE: a parameter value can be set in the contents of an e-mail message.  Assigned (20070715)  None (candidate not yet proposed)    View
92671  CVE-2016-5851  Candidate  python-docx before 0.8.6 allows context-dependent attackers to conduct XML External Entity (XXE) attacks via a crafted document.  Assigned (20160628)  None (candidate not yet proposed)    View
27391  CVE-2007-4034  Candidate  Stack-based buffer overflow in the YDPCTL.YDPControl.1 (aka Yahoo! Installer Plugin for Widgets) ActiveX control before 2007.7.13.3 (20070620) in YDPCTL.dll in Yahoo! Widgets before 4.0.5 allows remote attackers to execute arbitrary code via a long argument to the GetComponentVersion method. NOTE: some of these details are obtained from third party information.  Assigned (20070727)  None (candidate not yet proposed)    View
92927  CVE-2016-6107  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20160629)  None (candidate not yet proposed)    View

Page 20904 of 20943, showing 5 records out of 104715 total, starting on record 104516, ending on 104520

Actions