CVE List

Id CVE No. Status Description Phase Votes Comments Actions
24073  CVE-2007-0716  Candidate  Stack-based buffer overflow in Apple QuickTime before 7.1.5 allows remote user-assisted attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted QTIF file.  Assigned (20070205)  None (candidate not yet proposed)    View
89609  CVE-2016-2790  Candidate  The graphite2::TtfUtil::GetTableInfo function in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7, does not initialize memory for an unspecified data structure, which allows remote attackers to cause a denial of service or possibly have unknown other impact via a crafted Graphite smart font.  Assigned (20160301)  None (candidate not yet proposed)    View
24329  CVE-2007-0972  Candidate  Unrestricted file upload vulnerability in modules/emoticons.php in Jupiter CMS 1.1.5 allows remote attackers to upload arbitrary files by modifying the HTTP request to send an image content type, and to omit is_guest and is_user parameters. NOTE: this issue might be related to CVE-2006-4875.  Assigned (20070215)  None (candidate not yet proposed)    View
89865  CVE-2016-3046  Candidate  IBM Security Access Manager for Web is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements which could allow the attacker to view information in the back-end database.  Assigned (20160309)  None (candidate not yet proposed)    View
24585  CVE-2007-1228  Candidate  IBM DB2 UDB 8.2 before Fixpak 7 (aka fixpack 14), and DB2 9 before Fix Pack 2, on UNIX allows the "fenced" user to access certain unauthorized directories.  Assigned (20070302)  None (candidate not yet proposed)    View

Page 765 of 20943, showing 5 records out of 104715 total, starting on record 3821, ending on 3825

Actions