CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
23044 | CVE-2006-6940 | Candidate | Buffer overflow in the ParseHeader function in clsOWA.cls in POP3/SMTP to OWA (pop2owa) 1.1.3 allows remote attackers to execute arbitrary code via a long header in an e-mail message. | Assigned (20070116) | None (candidate not yet proposed) | View | |
88580 | CVE-2016-1761 | Candidate | libxml2 in Apple iOS before 9.3, OS X before 10.11.4, and watchOS before 2.2 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted XML document. | Assigned (20160113) | None (candidate not yet proposed) | View | |
23300 | CVE-2006-7196 | Candidate | Cross-site scripting (XSS) vulnerability in the calendar application example in Apache Tomcat 4.0.0 through 4.0.6, 4.1.0 through 4.1.31, 5.0.0 through 5.0.30, and 5.5.0 through 5.5.15 allows remote attackers to inject arbitrary web script or HTML via the time parameter to cal2.jsp and possibly unspecified other vectors. NOTE: this may be related to CVE-2006-0254.1. | Assigned (20070422) | None (candidate not yet proposed) | View | |
88836 | CVE-2016-2017 | Candidate | HPE Systems Insight Manager (SIM) before 7.5.1 allows remote authenticated users to obtain sensitive information or modify data via unspecified vectors, a different vulnerability than CVE-2016-2019, CVE-2016-2020, CVE-2016-2021, CVE-2016-2022, and CVE-2016-2030. | Assigned (20160122) | None (candidate not yet proposed) | View | |
23556 | CVE-2007-0199 | Candidate | The Data-link Switching (DLSw) feature in Cisco IOS 11.0 through 12.4 allows remote attackers to cause a denial of service (device reload) via "an invalid value in a DLSw message... during the capabilities exchange." | Assigned (20070110) | None (candidate not yet proposed) | View |
Page 354 of 20943, showing 5 records out of 104715 total, starting on record 1766, ending on 1770