CVE List

Id CVE No. Status Description Phase Votes Comments Actions
22531  CVE-2006-6427  Candidate  The Web User Interface in Xerox WorkCentre and WorkCentre Pro before 12.060.17.000, 13.x before 13.060.17.000, and 14.x before 14.060.17.000 allows remote attackers to execute arbitrary commands via unspecified vectors involving "command injection" in (1) the TCP/IP hostname, (2) Scan-to-mailbox folder names, and (3) certain parameters in the Microsoft Networking configuration. NOTE: vector 1 might be the same as CVE-2006-5290.  Assigned (20061209)  None (candidate not yet proposed)    View
88067  CVE-2016-1248  Candidate  vim before patch 8.0.0056 does not properly validate values for the "filetype", "syntax" and "keymap" options, which may result in the execution of arbitrary code if a file with a specially crafted modeline is opened.  Assigned (20151227)  None (candidate not yet proposed)    View
22787  CVE-2006-6683  Candidate  Pedro Lineu Orso chetcpasswd 2.4.1 and earlier verifies and updates user accounts via custom code that processes /etc/shadow and does not follow the PAM configuration, which might allow remote attackers to bypass intended restrictions implemented through PAM.  Assigned (20061221)  None (candidate not yet proposed)    View
88323  CVE-2016-1504  Candidate  dhcpcd before 6.10.0 allows remote attackers to cause a denial of service (invalid read and crash) via vectors related to the option length.  Assigned (20160107)  None (candidate not yet proposed)    View
23043  CVE-2006-6939  Candidate  GNU ed before 0.3 allows local users to overwrite arbitrary files via a symlink attack on temporary files, possibly in the open_sbuf function.  Assigned (20070116)  None (candidate not yet proposed)    View

Page 300 of 20943, showing 5 records out of 104715 total, starting on record 1496, ending on 1500

Actions