CVE List

Id CVE No. Status Description Phase Votes Comments Actions
95240  CVE-2016-8420  Candidate  An elevation of privilege vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-32451171. References: QC-CR#1087807.  Assigned (20161005)  None (candidate not yet proposed)    View
29960  CVE-2007-6603  Candidate  Hot or Not Clone has insufficient access control for producing and reading database backups, which allows remote attackers to obtain the administrator username and password via a direct request to control/backup/backup.php, which generates a backup/dump/backup.sql file that can be downloaded via a direct request to control/downloadfile.php.  Assigned (20071231)  None (candidate not yet proposed)    View
95496  CVE-2016-8676  Candidate  The get_vlc2 function in get_bits.h in Libav 11.9 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a crafted mp3 file. NOTE: this issue exists due to an incomplete fix for CVE-2016-8675.  Assigned (20161015)  None (candidate not yet proposed)    View
30216  CVE-2008-0099  Candidate  Multiple SQL injection vulnerabilities in MyPHP Forum 3.0 and earlier allow remote attackers to execute arbitrary SQL commands via the searchtext parameter to search.php, and unspecified other vectors.  Assigned (20080107)  None (candidate not yet proposed)    View
95752  CVE-2016-8932  Candidate  IBM Kenexa LMS on Cloud could allow a remote attacker to upload arbitrary files, which could allow the attacker to execute arbitrary code on the vulnerable server.  Assigned (20161025)  None (candidate not yet proposed)    View

Page 697 of 20943, showing 5 records out of 104715 total, starting on record 3481, ending on 3485

Actions