CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
26380 | CVE-2007-3023 | Candidate | unsp.c in ClamAV before 0.90.3 and 0.91 before 0.91rc1 does not properly calculate the end of a certain buffer, with unknown impact and remote attack vectors. | Assigned (20070604) | None (candidate not yet proposed) | View | |
91916 | CVE-2016-5097 | Candidate | phpMyAdmin before 4.6.2 places tokens in query strings and does not arrange for them to be stripped before external navigation, which allows remote attackers to obtain sensitive information by reading (1) HTTP requests or (2) server logs. | Assigned (20160526) | None (candidate not yet proposed) | View | |
26636 | CVE-2007-3279 | Candidate | PostgreSQL 8.1 and probably later versions, when the PL/pgSQL (plpgsql) language has been created, grants certain plpgsql privileges to the PUBLIC domain, which allows remote attackers to create and execute functions, as demonstrated by functions that perform local brute-force password guessing attacks, which may evade intrusion detection. | Assigned (20070619) | None (candidate not yet proposed) | View | |
92172 | CVE-2016-5353 | Candidate | epan/dissectors/packet-umts_fp.c in the UMTS FP dissector in Wireshark 1.12.x before 1.12.12 and 2.x before 2.0.4 mishandles the reserved C/T value, which allows remote attackers to cause a denial of service (application crash) via a crafted packet. | Assigned (20160609) | None (candidate not yet proposed) | View | |
26892 | CVE-2007-3535 | Candidate | Multiple directory traversal vulnerabilities in GL-SH Deaf Forum 6.4.4 and earlier allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the (1) FORUM_LANGUAGE parameter to functions.php or the (2) style parameter to bottom.php. | Assigned (20070703) | None (candidate not yet proposed) | View |
Page 996 of 20943, showing 5 records out of 104715 total, starting on record 4976, ending on 4980