CVE List

Id CVE No. Status Description Phase Votes Comments Actions
96011  CVE-2016-9191  Candidate  The cgroup offline implementation in the Linux kernel through 4.8.11 mishandles certain drain operations, which allows local users to cause a denial of service (system hang) by leveraging access to a container environment for executing a crafted application, as demonstrated by trinity.  Assigned (20161105)  None (candidate not yet proposed)    View
30731  CVE-2008-0614  Candidate  SQL injection vulnerability in index.php in Photokorn Gallery 1.543 allows remote attackers to execute arbitrary SQL commands via the pic parameter in a showpic action.  Assigned (20080205)  None (candidate not yet proposed)    View
96267  CVE-2016-9447  Candidate  The ROM mappings in the NSF decoder in gstreamer 0.10.x allow remote attackers to cause a denial of service (out-of-bounds read or write) and possibly execute arbitrary code via a crafted NSF music file.  Assigned (20161118)  None (candidate not yet proposed)    View
30987  CVE-2008-0870  Candidate  BEA WebLogic Portal 10.0 and 9.2 through Maintenance Pack 2, under certain circumstances, can redirect a user from the https:// URI for the Portal Administration Console to an http URI, which allows remote attackers to sniff the session.  Assigned (20080220)  None (candidate not yet proposed)    View
96523  CVE-2016-9703  Candidate  IBM Security Identity Manager Virtual Appliance does not invalidate session tokens which could allow an unauthorized user with physical access to the work station to obtain sensitive information.  Assigned (20161201)  None (candidate not yet proposed)    View

Page 934 of 20943, showing 5 records out of 104715 total, starting on record 4666, ending on 4670

Actions