CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
24073 | CVE-2007-0716 | Candidate | Stack-based buffer overflow in Apple QuickTime before 7.1.5 allows remote user-assisted attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted QTIF file. | Assigned (20070205) | None (candidate not yet proposed) | View | |
89609 | CVE-2016-2790 | Candidate | The graphite2::TtfUtil::GetTableInfo function in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7, does not initialize memory for an unspecified data structure, which allows remote attackers to cause a denial of service or possibly have unknown other impact via a crafted Graphite smart font. | Assigned (20160301) | None (candidate not yet proposed) | View | |
24329 | CVE-2007-0972 | Candidate | Unrestricted file upload vulnerability in modules/emoticons.php in Jupiter CMS 1.1.5 allows remote attackers to upload arbitrary files by modifying the HTTP request to send an image content type, and to omit is_guest and is_user parameters. NOTE: this issue might be related to CVE-2006-4875. | Assigned (20070215) | None (candidate not yet proposed) | View | |
89865 | CVE-2016-3046 | Candidate | IBM Security Access Manager for Web is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements which could allow the attacker to view information in the back-end database. | Assigned (20160309) | None (candidate not yet proposed) | View | |
24585 | CVE-2007-1228 | Candidate | IBM DB2 UDB 8.2 before Fixpak 7 (aka fixpack 14), and DB2 9 before Fix Pack 2, on UNIX allows the "fenced" user to access certain unauthorized directories. | Assigned (20070302) | None (candidate not yet proposed) | View |
Page 765 of 20943, showing 5 records out of 104715 total, starting on record 3821, ending on 3825