CVE List

Id CVE No. Status Description Phase Votes Comments Actions
93451  CVE-2016-6631  Candidate  An issue was discovered in phpMyAdmin. A user can execute a remote code execution attack against a server when phpMyAdmin is being run as a CGI application. Under certain server configurations, a user can pass a query string which is executed as a command-line argument by the file generator_plugin.sh. All 4.6.x versions (prior to 4.6.4), 4.4.x versions (prior to 4.4.15.8), and 4.0.x versions (prior to 4.0.10.17) are affected.  Assigned (20160806)  None (candidate not yet proposed)    View
28171  CVE-2007-4814  Candidate  Buffer overflow in the SQLServer ActiveX control in the Distributed Management Objects OLE DLL (sqldmo.dll) 2000.085.2004.00 in Microsoft SQL Server Enterprise Manager 8.05.2004 allows remote attackers to execute arbitrary code via a long second argument to the Start method.  Assigned (20070911)  None (candidate not yet proposed)    View
93707  CVE-2016-6887  Candidate  The pstm_exptmod function in MatrixSSL 3.8.6 and earlier does not properly perform modular exponentiation, which might allow remote attackers to predict the secret key via a CRT attack.  Assigned (20160819)  None (candidate not yet proposed)    View
28427  CVE-2007-5070  Candidate  Heap-based buffer overflow in the EasyMailMessagePrinter ActiveX control in emprint.DLL 6.0.1.0 in the Quiksoft EasyMail MessagePrinter Object allows remote attackers to execute arbitrary code via a long string in the first argument to the SetFont method.  Assigned (20070924)  None (candidate not yet proposed)    View
93963  CVE-2016-7143  Candidate  The m_authenticate function in modules/m_sasl.c in Charybdis before 3.5.3 allows remote attackers to spoof certificate fingerprints and consequently log in as another user via a crafted AUTHENTICATE parameter.  Assigned (20160905)  None (candidate not yet proposed)    View

Page 920 of 20943, showing 5 records out of 104715 total, starting on record 4596, ending on 4600

Actions