CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
36618 | CVE-2008-6501 | Candidate | Cross-site scripting (XSS) vulnerability in profiles/index.php in Pro Chat Rooms 3.0.2 allows remote attackers to inject arbitrary web script or HTML via the gud parameter. | Assigned (20090320) | None (candidate not yet proposed) | View | |
102154 | CVE-2017-5334 | Candidate | Double free vulnerability in the gnutls_x509_ext_import_proxy function in GnuTLS before 3.3.26 and 3.5.x before 3.5.8 allows remote attackers to have unspecified impact via crafted policy language information in an X.509 certificate with a Proxy Certificate Information extension. | Assigned (20170110) | None (candidate not yet proposed) | View | |
36874 | CVE-2008-6757 | Candidate | Cross-site scripting (XSS) vulnerability in manuals_search.php in ViArt Shop (aka Shopping Cart) 3.5 allows remote attackers to inject arbitrary web script or HTML via the manuals_search parameter. | Assigned (20090428) | None (candidate not yet proposed) | View | |
102410 | CVE-2017-5590 | Candidate | An incorrect implementation of "XEP-0280: Message Carbons" in multiple XMPP clients allows a remote attacker to impersonate any user, including contacts, in the vulnerable application"s display. This allows for various kinds of social engineering attacks. This CVE is for ChatSecure (3.2.0 - 4.0.0; only iOS) and Zom (all versions up to 1.0.11; only iOS). | Assigned (20170125) | None (candidate not yet proposed) | View | |
37130 | CVE-2008-7013 | Candidate | NetService.dll in Baidu Hi IM allows remote servers to cause a denial of service (client crash) via a crafted login response that triggers a divide-by-zero error. | Assigned (20090818) | None (candidate not yet proposed) | View |
Page 1465 of 20943, showing 5 records out of 104715 total, starting on record 7321, ending on 7325