CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
38889 | CVE-2009-1454 | Candidate | Cross-site scripting (XSS) vulnerability in tasks.php in WebCollab before 2.50 (aka Billy Goat) allows remote attackers to inject arbitrary web script or HTML via the selection parameter in a todo action. | Assigned (20090428) | None (candidate not yet proposed) | View | |
104425 | CVE-2017-7605 | Candidate | aacplusenc.c in HE-AAC+ Codec (aka libaacplus) 2.0.2 has an assertion failure, which might allow remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted audio file. | Assigned (20170409) | None (candidate not yet proposed) | View | |
39145 | CVE-2009-1710 | Candidate | WebKit in Apple Safari before 4.0 allows remote attackers to spoof the browser"s display of (1) the host name, (2) security indicators, and unspecified other UI elements via a custom cursor in conjunction with a modified CSS3 hotspot property. | Assigned (20090520) | None (candidate not yet proposed) | View | |
104681 | CVE-2017-7861 | Candidate | Google gRPC before 2017-02-22 has an out-of-bounds write related to the gpr_free function in core/lib/support/alloc.c. | Assigned (20170414) | None (candidate not yet proposed) | View | |
39401 | CVE-2009-1966 | Candidate | Unspecified vulnerability in the Config Management component in (1) Oracle Database 11.1.0.7 and (2) Oracle Enterprise Manager 10.2.0.4 allows remote authenticated users to affect confidentiality and integrity via unknown vectors, a different vulnerability than CVE-2009-1967. | Assigned (20090608) | None (candidate not yet proposed) | View |
Page 19160 of 20943, showing 5 records out of 104715 total, starting on record 95796, ending on 95800