CVE List

Id CVE No. Status Description Phase Votes Comments Actions
33045  CVE-2008-2928  Candidate  Multiple buffer overflows in the adminutil library in CGI applications in Red Hat Directory Server 7.1 before SP7 allow remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via a crafted Accept-Language HTTP header.  Assigned (20080630)  None (candidate not yet proposed)    View
98581  CVE-2017-1761  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20161130)  None (candidate not yet proposed)    View
33301  CVE-2008-3184  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in vBulletin 3.6.10 PL2 and earlier, and 3.7.2 and earlier 3.7.x versions, allow remote attackers to inject arbitrary web script or HTML via (1) the PATH_INFO (PHP_SELF) or (2) the do parameter, as demonstrated by requests to upload/admincp/faq.php. NOTE: this issue can be leveraged to execute arbitrary PHP code.  Assigned (20080715)  None (candidate not yet proposed)    View
98837  CVE-2017-2017  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20161130)  None (candidate not yet proposed)    View
33557  CVE-2008-3440  Candidate  Sun Java 1.6.0_03 and earlier versions, and possibly later versions, does not properly verify the authenticity of updates, which allows man-in-the-middle attackers to execute arbitrary code via a Trojan horse update, as demonstrated by evilgrade and DNS cache poisoning.  Assigned (20080801)  None (candidate not yet proposed)    View

Page 1720 of 20943, showing 5 records out of 104715 total, starting on record 8596, ending on 8600

Actions