CVE List

Id CVE No. Status Description Phase Votes Comments Actions
26600  CVE-2007-3243  Candidate  Cross-site scripting (XSS) vulnerability in bb-login.php in bbPress 0.8.1 allows remote attackers to inject arbitrary web script or HTML via the re parameter. NOTE: exploitation may require forcing the client to send a certain Referer header.  Assigned (20070614)  None (candidate not yet proposed)    View
92136  CVE-2016-5317  Candidate  Buffer overflow in the PixarLogDecode function in libtiff.so in the PixarLogDecode function in libtiff 4.0.6 and earlier, as used in GNOME nautilus, allows attackers to cause a denial of service attack (crash) via a crafted TIFF file.  Assigned (20160606)  None (candidate not yet proposed)    View
26856  CVE-2007-3499  Candidate  SlackRoll before 8 accepts gpg exit codes other than 0 and 1 as evidence of a valid signature, which allows remote Slackware mirror sites or man-in-the-middle attackers to cause a denial of service (data inconsistency) or possibly install Trojan horse packages via malformed gpg signatures.  Assigned (20070629)  None (candidate not yet proposed)    View
92392  CVE-2016-5573  Candidate  Unspecified vulnerability in Oracle Java SE 6u121, 7u111, 8u102; and Java SE Embedded 8u101 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Hotspot, a different vulnerability than CVE-2016-5582.  Assigned (20160616)  None (candidate not yet proposed)    View
27112  CVE-2007-3755  Candidate  Mail in Apple iPhone 1.1.1 allows remote user-assisted attackers to force the iPhone user to make calls to arbitrary telephone numbers via a "tel:" link, which does not prompt the user before dialing the number.  Assigned (20070712)  None (candidate not yet proposed)    View

Page 19073 of 20943, showing 5 records out of 104715 total, starting on record 95361, ending on 95365

Actions