CVE List

Id CVE No. Status Description Phase Votes Comments Actions
89093  CVE-2016-2274  Candidate  An issue was discovered in Adcon Telemetry A850 Telemetry Gateway Base Station. The Web Interface does not neutralize or incorrectly neutralizes user-controllable input before it is placed in the output; this could allow for cross-site scripting.  Assigned (20160209)  None (candidate not yet proposed)    View
23813  CVE-2007-0456  Candidate  Unspecified vulnerability in the LLT dissector in Wireshark (formerly Ethereal) 0.99.3 and 0.99.4 allows remote attackers to cause a denial of service (application crash) via unspecified vectors.  Assigned (20070123)  None (candidate not yet proposed)    View
89349  CVE-2016-2530  Candidate  The dissct_rsl_ipaccess_msg function in epan/dissectors/packet-rsl.c in the RSL dissector in Wireshark 1.12.x before 1.12.10 and 2.0.x before 2.0.2 mishandles the case of an unrecognized TLV type, which allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted packet, a different vulnerability than CVE-2016-2531.  Assigned (20160220)  None (candidate not yet proposed)    View
24069  CVE-2007-0712  Candidate  Heap-based buffer overflow in Apple QuickTime before 7.1.5 allows remote user-assisted attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted MIDI file.  Assigned (20070205)  None (candidate not yet proposed)    View
89605  CVE-2016-2786  Candidate  The pxp-agent component in Puppet Enterprise 2015.3.x before 2015.3.3 and Puppet Agent 1.3.x before 1.3.6 does not properly validate server certificates, which might allow remote attackers to spoof brokers and execute arbitrary commands via a crafted certificate.  Assigned (20160229)  None (candidate not yet proposed)    View

Page 440 of 20943, showing 5 records out of 104715 total, starting on record 2196, ending on 2200

Actions