CVE List

Id CVE No. Status Description Phase Votes Comments Actions
95500  CVE-2016-8680  Candidate  The _dwarf_get_abbrev_for_code function in dwarf_util.c in libdwarf 20161001 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) by calling the dwarfdump command on a crafted file.  Assigned (20161015)  None (candidate not yet proposed)    View
30220  CVE-2008-0103  Candidate  Unspecified vulnerability in Microsoft Office 2000 SP3, Office XP SP3, Office 2003 SP2, and Office 2004 for Mac allows remote attackers to execute arbitrary code via an Office document that contains a malformed object, related to a "memory handling error," aka "Microsoft Office Execution Jump Vulnerability."  Assigned (20080107)  None (candidate not yet proposed)    View
95756  CVE-2016-8936  Candidate  IBM Social Rendering Templates for Digital Data Connector is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.  Assigned (20161025)  None (candidate not yet proposed)    View
30476  CVE-2008-0359  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in BLOG:CMS 4.2.1b allow remote attackers to inject arbitrary web script or HTML via the PATH_INFO to (1) admin.php or (2) index.php in photo/.  Assigned (20080118)  None (candidate not yet proposed)    View
96012  CVE-2016-9192  Candidate  A vulnerability in Cisco AnyConnect Secure Mobility Client for Windows could allow an authenticated, local attacker to install and execute an arbitrary executable file with privileges equivalent to the Microsoft Windows operating system SYSTEM account. More Information: CSCvb68043. Known Affected Releases: 4.3(2039) 4.3(748). Known Fixed Releases: 4.3(4019) 4.4(225).  Assigned (20161106)  None (candidate not yet proposed)    View

Page 1005 of 20943, showing 5 records out of 104715 total, starting on record 5021, ending on 5025

Actions