CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
102663 | CVE-2017-5843 | Candidate | Multiple use-after-free vulnerabilities in the (1) gst_mini_object_unref, (2) gst_tag_list_unref, and (3) gst_mxf_demux_update_essence_tracks functions in GStreamer before 1.10.3 allow remote attackers to cause a denial of service (crash) via vectors involving stream tags, as demonstrated by 02785736.mxf. | Assigned (20170201) | None (candidate not yet proposed) | View | |
37383 | CVE-2008-7266 | Candidate | Cross-site scripting (XSS) vulnerability in an unspecified Shockwave Flash file in RSA Adaptive Authentication 2.x and 5.7.x allows remote attackers to inject arbitrary web script or HTML via unknown vectors. | Assigned (20101119) | None (candidate not yet proposed) | View | |
102919 | CVE-2017-6099 | Candidate | Cross-site scripting (XSS) vulnerability in GetAuthDetails.html.php in PayPal PHP Merchant SDK (aka merchant-sdk-php) 3.9.1 allows remote attackers to inject arbitrary web script or HTML via the token parameter. | Assigned (20170218) | None (candidate not yet proposed) | View | |
37639 | CVE-2009-0204 | Candidate | Cross-site scripting (XSS) vulnerability in HP Select Access 6.1 and 6.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | Assigned (20090120) | None (candidate not yet proposed) | View | |
103175 | CVE-2017-6355 | Candidate | Integer overflow in the vrend_create_shader function in vrend_renderer.c in virglrenderer before 0.6.0 allows local guest OS users to cause a denial of service (process crash) via crafted pkt_length and offlen values, which trigger an out-of-bounds access. | Assigned (20170227) | None (candidate not yet proposed) | View |
Page 1755 of 20943, showing 5 records out of 104715 total, starting on record 8771, ending on 8775