CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
38886 | CVE-2009-1451 | Candidate | Cross-site scripting (XSS) vulnerability in startpage.php in SMA-DB 0.3.12 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO. | Assigned (20090428) | None (candidate not yet proposed) | View | |
104422 | CVE-2017-7602 | Candidate | LibTIFF 4.0.7 has a signed integer overflow, which might allow remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted image. | Assigned (20170409) | None (candidate not yet proposed) | View | |
39142 | CVE-2009-1707 | Candidate | Race condition in the Reset Safari implementation in Apple Safari before 4.0 on Windows might allow local users to read stored web-site passwords via unspecified vectors. | Assigned (20090520) | None (candidate not yet proposed) | View | |
104678 | CVE-2017-7858 | Candidate | FreeType 2 before 2017-03-07 has an out-of-bounds write related to the TT_Get_MM_Var function in truetype/ttgxvar.c and the sfnt_init_face function in sfnt/sfobjs.c. | Assigned (20170414) | None (candidate not yet proposed) | View | |
39398 | CVE-2009-1963 | Candidate | Unspecified vulnerability in the Network Foundation component in Oracle Database 11.1.0.6 allows remote authenticated users to affect integrity and availability via unknown vectors. | Assigned (20090608) | None (candidate not yet proposed) | View |
Page 18958 of 20943, showing 5 records out of 104715 total, starting on record 94786, ending on 94790