CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
37127 | CVE-2008-7010 | Candidate | Skalfa Software SkaLinks Exchange Script 1.5 allows remote attackers to add new administrators and gain privileges via a direct request to admin/register.php. | Assigned (20090818) | None (candidate not yet proposed) | View | |
102663 | CVE-2017-5843 | Candidate | Multiple use-after-free vulnerabilities in the (1) gst_mini_object_unref, (2) gst_tag_list_unref, and (3) gst_mxf_demux_update_essence_tracks functions in GStreamer before 1.10.3 allow remote attackers to cause a denial of service (crash) via vectors involving stream tags, as demonstrated by 02785736.mxf. | Assigned (20170201) | None (candidate not yet proposed) | View | |
37383 | CVE-2008-7266 | Candidate | Cross-site scripting (XSS) vulnerability in an unspecified Shockwave Flash file in RSA Adaptive Authentication 2.x and 5.7.x allows remote attackers to inject arbitrary web script or HTML via unknown vectors. | Assigned (20101119) | None (candidate not yet proposed) | View | |
102919 | CVE-2017-6099 | Candidate | Cross-site scripting (XSS) vulnerability in GetAuthDetails.html.php in PayPal PHP Merchant SDK (aka merchant-sdk-php) 3.9.1 allows remote attackers to inject arbitrary web script or HTML via the token parameter. | Assigned (20170218) | None (candidate not yet proposed) | View | |
37639 | CVE-2009-0204 | Candidate | Cross-site scripting (XSS) vulnerability in HP Select Access 6.1 and 6.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | Assigned (20090120) | None (candidate not yet proposed) | View |
Page 1227 of 20943, showing 5 records out of 104715 total, starting on record 6131, ending on 6135