CVE List

Id CVE No. Status Description Phase Votes Comments Actions
103697  CVE-2017-6877  Candidate  Cross-site scripting (XSS) vulnerability in SVG file handling in Lutim 0.7.1 and earlier allows remote attackers to inject arbitrary web script.  Assigned (20170314)  None (candidate not yet proposed)    View
38417  CVE-2009-0982  Candidate  Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Enterprise and JD Edwards EnterpriseOne 8.49.19 allows remote authenticated users to affect integrity via unknown vectors.  Assigned (20090319)  None (candidate not yet proposed)    View
103953  CVE-2017-7133  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170317)  None (candidate not yet proposed)    View
38673  CVE-2009-1238  Candidate  Race condition in the HFS vfs sysctl interface in XNU 1228.8.20 and earlier on Apple Mac OS X 10.5.6 and earlier allows local users to cause a denial of service (kernel memory corruption) by simultaneously executing the same HFS_SET_PKG_EXTENSIONS code path in multiple threads, which is problematic because of lack of mutex locking for an unspecified global variable.  Assigned (20090402)  None (candidate not yet proposed)    View
104209  CVE-2017-7389  Candidate  Multiple Cross-Site Scripting (XSS) were discovered in "openeclass Release_3.5.4". The vulnerabilities exist due to insufficient filtration of user-supplied data (meeting_id, user) passed to the "openeclass-master/modules/tc/webconf/webconf.php" URL. An attacker could execute arbitrary HTML and script code in a browser in the context of the vulnerable website.  Assigned (20170331)  None (candidate not yet proposed)    View

Page 1429 of 20943, showing 5 records out of 104715 total, starting on record 7141, ending on 7145

Actions