CVE List

Id CVE No. Status Description Phase Votes Comments Actions
36618  CVE-2008-6501  Candidate  Cross-site scripting (XSS) vulnerability in profiles/index.php in Pro Chat Rooms 3.0.2 allows remote attackers to inject arbitrary web script or HTML via the gud parameter.  Assigned (20090320)  None (candidate not yet proposed)    View
102154  CVE-2017-5334  Candidate  Double free vulnerability in the gnutls_x509_ext_import_proxy function in GnuTLS before 3.3.26 and 3.5.x before 3.5.8 allows remote attackers to have unspecified impact via crafted policy language information in an X.509 certificate with a Proxy Certificate Information extension.  Assigned (20170110)  None (candidate not yet proposed)    View
36874  CVE-2008-6757  Candidate  Cross-site scripting (XSS) vulnerability in manuals_search.php in ViArt Shop (aka Shopping Cart) 3.5 allows remote attackers to inject arbitrary web script or HTML via the manuals_search parameter.  Assigned (20090428)  None (candidate not yet proposed)    View
102410  CVE-2017-5590  Candidate  An incorrect implementation of "XEP-0280: Message Carbons" in multiple XMPP clients allows a remote attacker to impersonate any user, including contacts, in the vulnerable application"s display. This allows for various kinds of social engineering attacks. This CVE is for ChatSecure (3.2.0 - 4.0.0; only iOS) and Zom (all versions up to 1.0.11; only iOS).  Assigned (20170125)  None (candidate not yet proposed)    View
37130  CVE-2008-7013  Candidate  NetService.dll in Baidu Hi IM allows remote servers to cause a denial of service (client crash) via a crafted login response that triggers a divide-by-zero error.  Assigned (20090818)  None (candidate not yet proposed)    View

Page 1465 of 20943, showing 5 records out of 104715 total, starting on record 7321, ending on 7325

Actions