CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
26600 | CVE-2007-3243 | Candidate | Cross-site scripting (XSS) vulnerability in bb-login.php in bbPress 0.8.1 allows remote attackers to inject arbitrary web script or HTML via the re parameter. NOTE: exploitation may require forcing the client to send a certain Referer header. | Assigned (20070614) | None (candidate not yet proposed) | View | |
92136 | CVE-2016-5317 | Candidate | Buffer overflow in the PixarLogDecode function in libtiff.so in the PixarLogDecode function in libtiff 4.0.6 and earlier, as used in GNOME nautilus, allows attackers to cause a denial of service attack (crash) via a crafted TIFF file. | Assigned (20160606) | None (candidate not yet proposed) | View | |
26856 | CVE-2007-3499 | Candidate | SlackRoll before 8 accepts gpg exit codes other than 0 and 1 as evidence of a valid signature, which allows remote Slackware mirror sites or man-in-the-middle attackers to cause a denial of service (data inconsistency) or possibly install Trojan horse packages via malformed gpg signatures. | Assigned (20070629) | None (candidate not yet proposed) | View | |
92392 | CVE-2016-5573 | Candidate | Unspecified vulnerability in Oracle Java SE 6u121, 7u111, 8u102; and Java SE Embedded 8u101 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Hotspot, a different vulnerability than CVE-2016-5582. | Assigned (20160616) | None (candidate not yet proposed) | View | |
27112 | CVE-2007-3755 | Candidate | Mail in Apple iPhone 1.1.1 allows remote user-assisted attackers to force the iPhone user to make calls to arbitrary telephone numbers via a "tel:" link, which does not prompt the user before dialing the number. | Assigned (20070712) | None (candidate not yet proposed) | View |
Page 19073 of 20943, showing 5 records out of 104715 total, starting on record 95361, ending on 95365