CVE List

Id CVE No. Status Description Phase Votes Comments Actions
102663  CVE-2017-5843  Candidate  Multiple use-after-free vulnerabilities in the (1) gst_mini_object_unref, (2) gst_tag_list_unref, and (3) gst_mxf_demux_update_essence_tracks functions in GStreamer before 1.10.3 allow remote attackers to cause a denial of service (crash) via vectors involving stream tags, as demonstrated by 02785736.mxf.  Assigned (20170201)  None (candidate not yet proposed)    View
37383  CVE-2008-7266  Candidate  Cross-site scripting (XSS) vulnerability in an unspecified Shockwave Flash file in RSA Adaptive Authentication 2.x and 5.7.x allows remote attackers to inject arbitrary web script or HTML via unknown vectors.  Assigned (20101119)  None (candidate not yet proposed)    View
102919  CVE-2017-6099  Candidate  Cross-site scripting (XSS) vulnerability in GetAuthDetails.html.php in PayPal PHP Merchant SDK (aka merchant-sdk-php) 3.9.1 allows remote attackers to inject arbitrary web script or HTML via the token parameter.  Assigned (20170218)  None (candidate not yet proposed)    View
37639  CVE-2009-0204  Candidate  Cross-site scripting (XSS) vulnerability in HP Select Access 6.1 and 6.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20090120)  None (candidate not yet proposed)    View
103175  CVE-2017-6355  Candidate  Integer overflow in the vrend_create_shader function in vrend_renderer.c in virglrenderer before 0.6.0 allows local guest OS users to cause a denial of service (process crash) via crafted pkt_length and offlen values, which trigger an out-of-bounds access.  Assigned (20170227)  None (candidate not yet proposed)    View

Page 1755 of 20943, showing 5 records out of 104715 total, starting on record 8771, ending on 8775

Actions