| 37164 |
CVE-2013-0895 |
Google Chrome before 25.0.1364.97 on Linux, and before 25.0.1364.99 on Mac OS X, does not properly handle pathnames during copy operations, which might make it easier for remote attackers to execute arbitrary programs via unspecified vectors. |
|
2 |
7.5 |
High |
2017-01-18 |
2013-09-30 |
View
|
| 46892 |
CVE-2012-5874 |
Multiple SQL injection vulnerabilities in the (1) update_whosonline_reg and (2) update_whosonline_guest functions in Elite Bulletin Board before 2.1.22 allow remote attackers to execute arbitrary SQL commands via the PATH_INFO to (a) checkuser.php, (b) groups.php, (c) index.php, (d) login.php, (e) quicklogin.php, (f) register.php, (g) Search.php, (h) viewboard.php, or (i) viewtopic.php. |
|
2 |
7.5 |
High |
2017-01-19 |
2013-01-21 |
View
|
| 47916 |
CVE-2009-0587 |
Multiple integer overflows in Evolution Data Server (aka evolution-data-server) before 2.24.5 allow context-dependent attackers to execute arbitrary code via a long string that is converted to a base64 representation in (1) addressbook/libebook/e-vcard.c in evc or (2) camel/camel-mime-utils.c in libcamel. |
|
2 |
7.5 |
High |
2017-01-07 |
2010-08-21 |
View
|
| 49964 |
CVE-2009-2730 |
libgnutls in GnuTLS before 2.8.2 does not properly handle a " |