CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
39146 | CVE-2009-1711 | Candidate | WebKit in Apple Safari before 4.0 does not properly initialize memory for Attr DOM objects, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted HTML document. | Assigned (20090520) | None (candidate not yet proposed) | View | |
104682 | CVE-2017-7862 | Candidate | FFmpeg before 2017-02-07 has an out-of-bounds write caused by a heap-based buffer overflow related to the decode_frame function in libavcodec/pictordec.c. | Assigned (20170414) | None (candidate not yet proposed) | View | |
39402 | CVE-2009-1967 | Candidate | Unspecified vulnerability in the Config Management component in (1) Oracle Database 11.1.0.7 and (2) Oracle Enterprise Manager 10.2.0.4 allows remote authenticated users to affect confidentiality and integrity via unknown vectors, a different vulnerability than CVE-2009-1966. | Assigned (20090608) | None (candidate not yet proposed) | View | |
39658 | CVE-2009-2223 | Candidate | Directory traversal vulnerability in locms/smarty.php in LightOpenCMS 0.1 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the cwd parameter. NOTE: remote file inclusion attacks may be possible. | Assigned (20090626) | None (candidate not yet proposed) | View | |
39914 | CVE-2009-2479 | Candidate | Mozilla Firefox 3.0.x, 3.5, and 3.5.1 on Windows allows remote attackers to cause a denial of service (uncaught exception and application crash) via a long Unicode string argument to the write method. NOTE: this was originally reported as a stack-based buffer overflow. NOTE: on Linux and Mac OS X, a crash resulting from this long string reportedly occurs in an operating-system library, not in Firefox. | Assigned (20090716) | None (candidate not yet proposed) | View |
Page 18642 of 20943, showing 5 records out of 104715 total, starting on record 93206, ending on 93210