CVE List

Id CVE No. Status Description Phase Votes Comments Actions
103409  CVE-2017-6589  Candidate  EpicEditor through 0.2.3 has Cross-Site Scripting because of an insecure default marked.js configuration. An example attack vector is a crafted IMG element in an HTML document.  Assigned (20170309)  None (candidate not yet proposed)    View
38129  CVE-2009-0694  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20090222)  None (candidate not yet proposed)    View
103665  CVE-2017-6845  Candidate  The PoDoFo::PdfColor::operator function in PdfColor.cpp in PoDoFo 0.9.4 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted file.  Assigned (20170312)  None (candidate not yet proposed)    View
38385  CVE-2009-0950  Candidate  Stack-based buffer overflow in Apple iTunes before 8.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via an itms: URL with a long URL component after a colon.  Assigned (20090318)  None (candidate not yet proposed)    View
103921  CVE-2017-7101  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170317)  None (candidate not yet proposed)    View

Page 18682 of 20943, showing 5 records out of 104715 total, starting on record 93406, ending on 93410

Actions