CVE List

Id CVE No. Status Description Phase Votes Comments Actions
93341  CVE-2016-6521  Candidate  Cross-site request forgery (CSRF) vulnerability in Grails console (aka Grails Debug Console and Grails Web Console) 2.0.7, 1.5.10, and earlier allows remote attackers to hijack the authentication of users for requests that execute arbitrary Groovy code via unspecified vectors.  Assigned (20160802)  None (candidate not yet proposed)    View
93342  CVE-2016-6522  Candidate  Integer overflow in the uvm_map_isavail function in uvm/uvm_map.c in OpenBSD 5.9 allows local users to cause a denial of service (kernel panic) via a crafted mmap call, which triggers the new mapping to overlap with an existing mapping.  Assigned (20160802)  None (candidate not yet proposed)    View
93343  CVE-2016-6523  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in the media manager in Dotclear before 2.10 allow remote attackers to inject arbitrary web script or HTML via the (1) q or (2) link_type parameter to admin/media.php.  Assigned (20160802)  None (candidate not yet proposed)    View
93344  CVE-2016-6524  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20160803)  None (candidate not yet proposed)    View
93345  CVE-2016-6525  Candidate  Heap-based buffer overflow in the pdf_load_mesh_params function in pdf/pdf-shade.c in MuPDF allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a large decode array.  Assigned (20160803)  None (candidate not yet proposed)    View

Page 18669 of 20943, showing 5 records out of 104715 total, starting on record 93341, ending on 93345

Actions