CVE List

Id CVE No. Status Description Phase Votes Comments Actions
37135  CVE-2008-7018  Candidate  Cross-site scripting (XSS) vulnerability in NashTech Easy PHP Calendar 6.3.25 allows remote attackers to inject arbitrary web script or HTML via the Details field (descr parameter) in an Add New Event action in an unspecified request as generated by an add action in index.php.  Assigned (20090821)  None (candidate not yet proposed)    View
102671  CVE-2017-5851  Candidate  The free_options function in options_manager.c in mp3splt 2.6.2 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a crafted file. NOTE: this typically has no risk; this crash of this command-line program has no further consequences for availability.  Assigned (20170201)  None (candidate not yet proposed)    View
37391  CVE-2008-7274  Candidate  IBM WebSphere Application Server (WAS) 6.1.0.9, when the JAAS Login functionality is enabled, allows attackers to perform an internal application hashtable login by (1) not providing a password or (2) providing an empty password.  Assigned (20110214)  None (candidate not yet proposed)    View
102927  CVE-2017-6107  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170221)  None (candidate not yet proposed)    View
37647  CVE-2009-0212  Candidate  Unspecified vulnerability in the WebFGServer application in AREVA e-terrahabitat 5.7 and earlier allows remote attackers to cause a denial of service (system crash) via unknown vectors, aka PD32020.  Assigned (20090120)  None (candidate not yet proposed)    View

Page 1266 of 20943, showing 5 records out of 104715 total, starting on record 6326, ending on 6330

Actions