CVE List

Id CVE No. Status Description Phase Votes Comments Actions
36872  CVE-2008-6755  Candidate  ZoneMinder 1.23.3 on Fedora 10 sets the ownership of /etc/zm.conf to the apache user account, and sets the permissions to 0600, which makes it easier for remote attackers to modify this file by accessing it through a (1) PHP or (2) CGI script.  Assigned (20090427)  None (candidate not yet proposed)    View
102408  CVE-2017-5588  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170125)  None (candidate not yet proposed)    View
37128  CVE-2008-7011  Candidate  The Unreal engine, as used in Unreal Tournament 3 1.3, Unreal Tournament 2003 and 2004, Dead Man"s Hand, Pariah, WarPath, Postal2, and Shadow Ops, allows remote authenticated users to cause a denial of service (server exit) via multiple file downloads from the server, which triggers an assertion failure when the Closing flag in UnChan.cpp is set.  Assigned (20090818)  None (candidate not yet proposed)    View
102664  CVE-2017-5844  Candidate  The gst_riff_create_audio_caps function in gst-libs/gst/riff/riff-media.c in gst-plugins-base in GStreamer before 1.10.3 allows remote attackers to cause a denial of service (floating point exception and crash) via a crafted ASF file.  Assigned (20170201)  None (candidate not yet proposed)    View
37384  CVE-2008-7267  Candidate  SQL injection vulnerability in announcements.php in SiteEngine 5.x allows remote attackers to execute arbitrary SQL commands via the id parameter.  Assigned (20101201)  None (candidate not yet proposed)    View

Page 708 of 20943, showing 5 records out of 104715 total, starting on record 3536, ending on 3540

Actions