CVE List

Id CVE No. Status Description Phase Votes Comments Actions
101900  CVE-2017-5080  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170102)  None (candidate not yet proposed)    View
36620  CVE-2008-6503  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in PrestaShop 1.1.0.3 allow remote attackers to inject arbitrary web script or HTML via the PATH_INFO to (1) admin/login.php and (2) order.php.  Assigned (20090320)  None (candidate not yet proposed)    View
102156  CVE-2017-5336  Candidate  Stack-based buffer overflow in the cdk_pk_get_keyid function in lib/opencdk/pubkey.c in GnuTLS before 3.3.26 and 3.5.x before 3.5.8 allows remote attackers to have unspecified impact via a crafted OpenPGP certificate.  Assigned (20170110)  None (candidate not yet proposed)    View
36876  CVE-2008-6759  Candidate  ViArt Shop (aka Shopping Cart) 3.5 allows remote attackers to obtain sensitive information via a URL in the POST_DATA parameter to manuals_search.php, which reveals the installation path in an error message.  Assigned (20090428)  None (candidate not yet proposed)    View
102412  CVE-2017-5592  Candidate  An incorrect implementation of "XEP-0280: Message Carbons" in multiple XMPP clients allows a remote attacker to impersonate any user, including contacts, in the vulnerable application"s display. This allows for various kinds of social engineering attacks. This CVE is for profanity (0.4.7 - 0.5.0).  Assigned (20170125)  None (candidate not yet proposed)    View

Page 1015 of 20943, showing 5 records out of 104715 total, starting on record 5071, ending on 5075

Actions