CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
34055 | CVE-2008-3938 | Candidate | Cross-site request forgery (CSRF) vulnerability in user_admin.php in Open Media Collectors Database (OpenDb) 1.0.6 allows remote attackers to change arbitrary passwords via an update_password action. | Assigned (20080905) | None (candidate not yet proposed) | View | |
99591 | CVE-2017-2771 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20161201) | None (candidate not yet proposed) | View | |
34311 | CVE-2008-4194 | Candidate | The p_exec_query function in src/dns_query.c in pdnsd before 1.2.7-par allows remote attackers to cause a denial of service (daemon crash) via a long DNS reply with many entries in the answer section, related to a "dangling pointer bug." | Assigned (20080923) | None (candidate not yet proposed) | View | |
99847 | CVE-2017-3027 | Candidate | Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have an exploitable use after free vulnerability in the XFA module, related to the choiceList element. Successful exploitation could lead to arbitrary code execution. | Assigned (20161202) | None (candidate not yet proposed) | View | |
34567 | CVE-2008-4450 | Candidate | Cross-site scripting (XSS) vulnerability in adodb.php in XAMPP for Windows 1.6.8 allows remote attackers to inject arbitrary web script or HTML via the (1) dbserver, (2) host, (3) user, (4) password, (5) database, and (6) table parameters. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | Assigned (20081006) | None (candidate not yet proposed) | View |
Page 1750 of 20943, showing 5 records out of 104715 total, starting on record 8746, ending on 8750