CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
37135 | CVE-2008-7018 | Candidate | Cross-site scripting (XSS) vulnerability in NashTech Easy PHP Calendar 6.3.25 allows remote attackers to inject arbitrary web script or HTML via the Details field (descr parameter) in an Add New Event action in an unspecified request as generated by an add action in index.php. | Assigned (20090821) | None (candidate not yet proposed) | View | |
102671 | CVE-2017-5851 | Candidate | The free_options function in options_manager.c in mp3splt 2.6.2 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a crafted file. NOTE: this typically has no risk; this crash of this command-line program has no further consequences for availability. | Assigned (20170201) | None (candidate not yet proposed) | View | |
37391 | CVE-2008-7274 | Candidate | IBM WebSphere Application Server (WAS) 6.1.0.9, when the JAAS Login functionality is enabled, allows attackers to perform an internal application hashtable login by (1) not providing a password or (2) providing an empty password. | Assigned (20110214) | None (candidate not yet proposed) | View | |
102927 | CVE-2017-6107 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20170221) | None (candidate not yet proposed) | View | |
37647 | CVE-2009-0212 | Candidate | Unspecified vulnerability in the WebFGServer application in AREVA e-terrahabitat 5.7 and earlier allows remote attackers to cause a denial of service (system crash) via unknown vectors, aka PD32020. | Assigned (20090120) | None (candidate not yet proposed) | View |
Page 1266 of 20943, showing 5 records out of 104715 total, starting on record 6326, ending on 6330