CVE List

Id CVE No. Status Description Phase Votes Comments Actions
38889  CVE-2009-1454  Candidate  Cross-site scripting (XSS) vulnerability in tasks.php in WebCollab before 2.50 (aka Billy Goat) allows remote attackers to inject arbitrary web script or HTML via the selection parameter in a todo action.  Assigned (20090428)  None (candidate not yet proposed)    View
104425  CVE-2017-7605  Candidate  aacplusenc.c in HE-AAC+ Codec (aka libaacplus) 2.0.2 has an assertion failure, which might allow remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted audio file.  Assigned (20170409)  None (candidate not yet proposed)    View
39145  CVE-2009-1710  Candidate  WebKit in Apple Safari before 4.0 allows remote attackers to spoof the browser"s display of (1) the host name, (2) security indicators, and unspecified other UI elements via a custom cursor in conjunction with a modified CSS3 hotspot property.  Assigned (20090520)  None (candidate not yet proposed)    View
104681  CVE-2017-7861  Candidate  Google gRPC before 2017-02-22 has an out-of-bounds write related to the gpr_free function in core/lib/support/alloc.c.  Assigned (20170414)  None (candidate not yet proposed)    View
39401  CVE-2009-1966  Candidate  Unspecified vulnerability in the Config Management component in (1) Oracle Database 11.1.0.7 and (2) Oracle Enterprise Manager 10.2.0.4 allows remote authenticated users to affect confidentiality and integrity via unknown vectors, a different vulnerability than CVE-2009-1967.  Assigned (20090608)  None (candidate not yet proposed)    View

Page 19160 of 20943, showing 5 records out of 104715 total, starting on record 95796, ending on 95800

Actions