CVE List

Id CVE No. Status Description Phase Votes Comments Actions
37632  CVE-2009-0197  Candidate  Integer overflow in the FORMATS Plugin before 4.23 for IrfanView allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a large XPM file that triggers a heap-based buffer overflow.  Assigned (20090120)  None (candidate not yet proposed)    View
103168  CVE-2017-6348  Candidate  The hashbin_delete function in net/irda/irqueue.c in the Linux kernel before 4.9.13 improperly manages lock dropping, which allows local users to cause a denial of service (deadlock) via crafted operations on IrDA devices.  Assigned (20170226)  None (candidate not yet proposed)    View
37888  CVE-2009-0453  Candidate  Online Grades 3.2.4 allows remote attackers to obtain configuration information via a direct request to phpinfo.php, which calls the phpinfo function.  Assigned (20090205)  None (candidate not yet proposed)    View
103424  CVE-2017-6604  Candidate  A vulnerability in the web interface of Cisco Integrated Management Controller (IMC) Software could allow an unauthenticated, remote attacker to redirect a user to a malicious web page. This vulnerability affects the following Cisco products running Cisco IMC Software: Unified Computing System (UCS) B-Series M3 and M4 Blade Servers, Unified Computing System (UCS) C-Series M3 and M4 Rack Servers. More Information: CSCvc37931. Known Affected Releases: 3.1(2c)B.  Assigned (20170309)  None (candidate not yet proposed)    View
38144  CVE-2009-0709  Candidate  SQL injection vulnerability in login.php in PHPFootball 1.6 allows remote attackers to execute arbitrary SQL commands via the user parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.  Assigned (20090223)  None (candidate not yet proposed)    View

Page 668 of 20943, showing 5 records out of 104715 total, starting on record 3336, ending on 3340

Actions