CVE List

Id CVE No. Status Description Phase Votes Comments Actions
37127  CVE-2008-7010  Candidate  Skalfa Software SkaLinks Exchange Script 1.5 allows remote attackers to add new administrators and gain privileges via a direct request to admin/register.php.  Assigned (20090818)  None (candidate not yet proposed)    View
102663  CVE-2017-5843  Candidate  Multiple use-after-free vulnerabilities in the (1) gst_mini_object_unref, (2) gst_tag_list_unref, and (3) gst_mxf_demux_update_essence_tracks functions in GStreamer before 1.10.3 allow remote attackers to cause a denial of service (crash) via vectors involving stream tags, as demonstrated by 02785736.mxf.  Assigned (20170201)  None (candidate not yet proposed)    View
37383  CVE-2008-7266  Candidate  Cross-site scripting (XSS) vulnerability in an unspecified Shockwave Flash file in RSA Adaptive Authentication 2.x and 5.7.x allows remote attackers to inject arbitrary web script or HTML via unknown vectors.  Assigned (20101119)  None (candidate not yet proposed)    View
102919  CVE-2017-6099  Candidate  Cross-site scripting (XSS) vulnerability in GetAuthDetails.html.php in PayPal PHP Merchant SDK (aka merchant-sdk-php) 3.9.1 allows remote attackers to inject arbitrary web script or HTML via the token parameter.  Assigned (20170218)  None (candidate not yet proposed)    View
37639  CVE-2009-0204  Candidate  Cross-site scripting (XSS) vulnerability in HP Select Access 6.1 and 6.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20090120)  None (candidate not yet proposed)    View

Page 1227 of 20943, showing 5 records out of 104715 total, starting on record 6131, ending on 6135

Actions