CVE List

Id CVE No. Status Description Phase Votes Comments Actions
28425  CVE-2007-5068  Candidate  SQL injection vulnerability in index.php in phpFullAnnu (PFA) 6.0 allows remote attackers to execute arbitrary SQL commands via the mod parameter.  Assigned (20070924)  None (candidate not yet proposed)    View
93961  CVE-2016-7141  Candidate  curl and libcurl before 7.50.2, when built with NSS and the libnsspem.so library is available at runtime, allow remote attackers to hijack the authentication of a TLS connection by leveraging reuse of a previously loaded client certificate from file for a connection for which no certificate has been set, a different vulnerability than CVE-2016-5420.  Assigned (20160905)  None (candidate not yet proposed)    View
28681  CVE-2007-5324  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2007-2582. Reason: This candidate is a duplicate of CVE-2007-2582. Notes: All CVE users should reference CVE-2007-2582 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.  Assigned (20071010)  None (candidate not yet proposed)    View
94217  CVE-2016-7397  Candidate  The Frontend component in Sophos UTM with firmware 9.405-5 and earlier allows local administrators to obtain sensitive password information by reading the "value" field of the SMTP user settings in the notifications configuration tab.  Assigned (20160909)  None (candidate not yet proposed)    View
28937  CVE-2007-5580  Candidate  Buffer overflow in a certain driver in Cisco Security Agent 4.5.1 before 4.5.1.672, 5.0 before 5.0.0.225, 5.1 before 5.1.0.106, and 5.2 before 5.2.0.238 on Windows allows remote attackers to execute arbitrary code via a crafted SMB packet in a TCP session on port (1) 139 or (2) 445.  Assigned (20071019)  None (candidate not yet proposed)    View

Page 762 of 20943, showing 5 records out of 104715 total, starting on record 3806, ending on 3810

Actions