CVE List

Id CVE No. Status Description Phase Votes Comments Actions
33773  CVE-2008-3656  Candidate  Algorithmic complexity vulnerability in the WEBrick::HTTPUtils.split_header_value function in WEBrick::HTTP::DefaultFileHandler in WEBrick in Ruby 1.8.5 and earlier, 1.8.6 through 1.8.6-p286, 1.8.7 through 1.8.7-p71, and 1.9 through r18423 allows context-dependent attackers to cause a denial of service (CPU consumption) via a crafted HTTP request that is processed by a backtracking regular expression.  Assigned (20080812)  None (candidate not yet proposed)    View
99309  CVE-2017-2489  Candidate  An issue was discovered in certain Apple products. macOS before 10.12.4 is affected. The issue involves the "Intel Graphics Driver" component. It allows attackers to obtain sensitive information from kernel memory via a crafted app.  Assigned (20161201)  None (candidate not yet proposed)    View
34029  CVE-2008-3912  Candidate  libclamav in ClamAV before 0.94 allows attackers to cause a denial of service (NULL pointer dereference and application crash) via vectors related to an out-of-memory condition.  Assigned (20080904)  None (candidate not yet proposed)    View
99565  CVE-2017-2745  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20161201)  None (candidate not yet proposed)    View
34285  CVE-2008-4168  Candidate  Cross-site scripting (XSS) vulnerability in verify_login.jsp in Pro2col Stingray FTS allows remote attackers to inject arbitrary web script or HTML via the form_username parameter (aka user name field).  Assigned (20080922)  None (candidate not yet proposed)    View

Page 18872 of 20943, showing 5 records out of 104715 total, starting on record 94356, ending on 94360

Actions