CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
29958 | CVE-2007-6601 | Candidate | The DBLink module in PostgreSQL 8.2 before 8.2.6, 8.1 before 8.1.11, 8.0 before 8.0.15, 7.4 before 7.4.19, and 7.3 before 7.3.21, when local trust or ident authentication is used, allows remote attackers to gain privileges via unspecified vectors. NOTE: this issue exists because of an incomplete fix for CVE-2007-3278. | Assigned (20071231) | None (candidate not yet proposed) | View | |
95494 | CVE-2016-8674 | Candidate | The pdf_to_num function in pdf-object.c in MuPDF before 1.10 allows remote attackers to cause a denial of service (use-after-free and application crash) via a crafted file. | Assigned (20161015) | None (candidate not yet proposed) | View | |
30214 | CVE-2008-0097 | Candidate | Format string vulnerability in the log function in Georgia SoftWorks SSH2 Server (GSW_SSHD) 7.01.0003 and earlier allows remote attackers to execute arbitrary code via format string specifiers in the username field, as demonstrated by a certain LoginPassword message. | Assigned (20080107) | None (candidate not yet proposed) | View | |
95750 | CVE-2016-8930 | Candidate | IBM Kenexa LMS on Cloud is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database. | Assigned (20161025) | None (candidate not yet proposed) | View | |
30470 | CVE-2008-0353 | Candidate | SQL injection vulnerability in visualizza_tabelle.php in php-residence 0.7.2 and 1.0 allows remote attackers to execute arbitrary SQL commands via the cognome_cerca parameter. NOTE: some of these details are obtained from third party information. | Assigned (20080118) | None (candidate not yet proposed) | View |
Page 530 of 20943, showing 5 records out of 104715 total, starting on record 2646, ending on 2650