CVE List

Id CVE No. Status Description Phase Votes Comments Actions
19712  CVE-2006-3608  Candidate  The Gallery module in Simone Vellei Flatnuke 2.5.7 and earlier, when Gallery uploads are enabled, does not restrict the extensions of uploaded files that begin with a GIF header, which allows remote authenticated users to execute arbitrary PHP code via an uploaded .php file.  Assigned (20060714)  None (candidate not yet proposed)    View
85248  CVE-2015-7971  Candidate  Xen 3.2.x through 4.6.x does not limit the number of printk console messages when logging certain pmu and profiling hypercalls, which allows local guests to cause a denial of service via a sequence of crafted (1) HYPERCALL_xenoprof_op hypercalls, which are not properly handled in the do_xenoprof_op function in common/xenoprof.c, or (2) HYPERVISOR_xenpmu_op hypercalls, which are not properly handled in the do_xenpmu_op function in arch/x86/cpu/vpmu.c.  Assigned (20151023)  None (candidate not yet proposed)    View
19968  CVE-2006-3864  Candidate  Unspecified vulnerability in mso.dll in Microsoft Office 2000, XP, and 2003, and Microsoft PowerPoint 2000, XP, and 2003, allows remote user-assisted attackers to execute arbitrary code via a malformed record in a (1) .DOC, (2) .PPT, or (3) .XLS file that triggers memory corruption, related to an "array boundary condition" (possibly an array index overflow), a different vulnerability than CVE-2006-3434, CVE-2006-3650, and CVE-2006-3868.  Assigned (20060726)  None (candidate not yet proposed)    View
85504  CVE-2015-8227  Candidate  The built-in web server in Huawei VP9660 multi-point control unit with software before V200R001C30SPC700 allows remote administrators to obtain sensitive information or cause a denial of service via a crafted message.  Assigned (20151117)  None (candidate not yet proposed)    View
20224  CVE-2006-4120  Candidate  Cross-site scripting (XSS) vulnerability in the Recipe module (recipe.module) before 1.54 for Drupal 4.6 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20060814)  None (candidate not yet proposed)    View

Page 640 of 20943, showing 5 records out of 104715 total, starting on record 3196, ending on 3200

Actions