CVE List

Id CVE No. Status Description Phase Votes Comments Actions
26380  CVE-2007-3023  Candidate  unsp.c in ClamAV before 0.90.3 and 0.91 before 0.91rc1 does not properly calculate the end of a certain buffer, with unknown impact and remote attack vectors.  Assigned (20070604)  None (candidate not yet proposed)    View
91916  CVE-2016-5097  Candidate  phpMyAdmin before 4.6.2 places tokens in query strings and does not arrange for them to be stripped before external navigation, which allows remote attackers to obtain sensitive information by reading (1) HTTP requests or (2) server logs.  Assigned (20160526)  None (candidate not yet proposed)    View
26636  CVE-2007-3279  Candidate  PostgreSQL 8.1 and probably later versions, when the PL/pgSQL (plpgsql) language has been created, grants certain plpgsql privileges to the PUBLIC domain, which allows remote attackers to create and execute functions, as demonstrated by functions that perform local brute-force password guessing attacks, which may evade intrusion detection.  Assigned (20070619)  None (candidate not yet proposed)    View
92172  CVE-2016-5353  Candidate  epan/dissectors/packet-umts_fp.c in the UMTS FP dissector in Wireshark 1.12.x before 1.12.12 and 2.x before 2.0.4 mishandles the reserved C/T value, which allows remote attackers to cause a denial of service (application crash) via a crafted packet.  Assigned (20160609)  None (candidate not yet proposed)    View
26892  CVE-2007-3535  Candidate  Multiple directory traversal vulnerabilities in GL-SH Deaf Forum 6.4.4 and earlier allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the (1) FORUM_LANGUAGE parameter to functions.php or the (2) style parameter to bottom.php.  Assigned (20070703)  None (candidate not yet proposed)    View

Page 996 of 20943, showing 5 records out of 104715 total, starting on record 4976, ending on 4980

Actions