CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
26633 | CVE-2007-3276 | Candidate | Cross-site scripting (XSS) vulnerability in index.php in Site@School (S@S) 2.4.10 allows remote attackers to inject arbitrary web script or HTML via the q parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | Assigned (20070619) | None (candidate not yet proposed) | View | |
92169 | CVE-2016-5350 | Candidate | epan/dissectors/packet-dcerpc-spoolss.c in the SPOOLS component in Wireshark 1.12.x before 1.12.12 and 2.x before 2.0.4 mishandles unexpected offsets, which allows remote attackers to cause a denial of service (infinite loop) via a crafted packet. | Assigned (20160609) | None (candidate not yet proposed) | View | |
26889 | CVE-2007-3532 | Candidate | NVIDIA drivers (nvidia-drivers) before 1.0.7185, 1.0.9639, and 100.14.11, as used in Gentoo Linux and possibly other distributions, creates /dev/nvidia* device files with insecure permissions, which allows local users to modify video card settings, cause a denial of service (crash or physical video card damage), and obtain sensitive information. | Assigned (20070703) | None (candidate not yet proposed) | View | |
92425 | CVE-2016-5606 | Candidate | Unspecified vulnerability in Oracle Sun Solaris 11.3 allows local users to affect integrity and availability via vectors related to Kernel Zones. | Assigned (20160616) | None (candidate not yet proposed) | View | |
27145 | CVE-2007-3788 | Candidate | The eSoft InstaGate EX2 UTM device stores the admin password within the settings HTML document, which might allow context-dependent attackers to obtain sensitive information by reading this document. | Assigned (20070715) | None (candidate not yet proposed) | View |
Page 769 of 20943, showing 5 records out of 104715 total, starting on record 3841, ending on 3845