CVE List

Id CVE No. Status Description Phase Votes Comments Actions
29963  CVE-2007-6606  Candidate  OpenBiblio 0.5.2-pre4 and earlier allows remote attackers to obtain configuration information via a direct request to phpinfo.php, which calls the phpinfo function.  Assigned (20071231)  None (candidate not yet proposed)    View
95499  CVE-2016-8679  Candidate  The _dwarf_get_size_of_val function in libdwarf/dwarf_util.c in Libdwarf before 20161124 allows remote attackers to cause a denial of service (out-of-bounds read) by calling the dwarfdump command on a crafted file.  Assigned (20161015)  None (candidate not yet proposed)    View
30219  CVE-2008-0102  Candidate  Unspecified vulnerability in Microsoft Office Publisher 2000, 2002, and 2003 SP2 allows remote attackers to execute arbitrary code via a crafted .pub file, related to invalid "memory values," aka "Publisher Invalid Memory Reference Vulnerability."  Assigned (20080107)  None (candidate not yet proposed)    View
95755  CVE-2016-8935  Candidate  IBM Kenexa LMS on Cloud 13.1, 13.2, 13.2.2, 13.2.3, 13.2.4 and 14.0.0 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM Reference #: 1999483.  Assigned (20161025)  None (candidate not yet proposed)    View
30475  CVE-2008-0358  Candidate  SQL injection vulnerability in index.php in Pixelpost 1.7 allows remote attackers to execute arbitrary SQL commands via the parent_id parameter.  Assigned (20080118)  None (candidate not yet proposed)    View

Page 923 of 20943, showing 5 records out of 104715 total, starting on record 4611, ending on 4615

Actions