CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
29963 | CVE-2007-6606 | Candidate | OpenBiblio 0.5.2-pre4 and earlier allows remote attackers to obtain configuration information via a direct request to phpinfo.php, which calls the phpinfo function. | Assigned (20071231) | None (candidate not yet proposed) | View | |
95499 | CVE-2016-8679 | Candidate | The _dwarf_get_size_of_val function in libdwarf/dwarf_util.c in Libdwarf before 20161124 allows remote attackers to cause a denial of service (out-of-bounds read) by calling the dwarfdump command on a crafted file. | Assigned (20161015) | None (candidate not yet proposed) | View | |
30219 | CVE-2008-0102 | Candidate | Unspecified vulnerability in Microsoft Office Publisher 2000, 2002, and 2003 SP2 allows remote attackers to execute arbitrary code via a crafted .pub file, related to invalid "memory values," aka "Publisher Invalid Memory Reference Vulnerability." | Assigned (20080107) | None (candidate not yet proposed) | View | |
95755 | CVE-2016-8935 | Candidate | IBM Kenexa LMS on Cloud 13.1, 13.2, 13.2.2, 13.2.3, 13.2.4 and 14.0.0 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM Reference #: 1999483. | Assigned (20161025) | None (candidate not yet proposed) | View | |
30475 | CVE-2008-0358 | Candidate | SQL injection vulnerability in index.php in Pixelpost 1.7 allows remote attackers to execute arbitrary SQL commands via the parent_id parameter. | Assigned (20080118) | None (candidate not yet proposed) | View |
Page 923 of 20943, showing 5 records out of 104715 total, starting on record 4611, ending on 4615