CVE List

Id CVE No. Status Description Phase Votes Comments Actions
96081  CVE-2016-9261  Candidate  Cross-site scripting (XSS) vulnerability in Tenable Log Correlation Engine (aka LCE) before 4.8.1 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20161110)  None (candidate not yet proposed)    View
96082  CVE-2016-9262  Candidate  Multiple integer overflows in the (1) jas_realloc function in base/jas_malloc.c and (2) mem_resize function in base/jas_stream.c in JasPer before 1.900.22 allow remote attackers to cause a denial of service via a crafted image, which triggers use after free vulnerabilities.  Assigned (20161110)  None (candidate not yet proposed)    View
96083  CVE-2016-9263  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20161110)  None (candidate not yet proposed)    View
96084  CVE-2016-9264  Candidate  Buffer overflow in the printMP3Headers function in listmp3.c in Libming 0.4.7 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted mp3 file.  Assigned (20161110)  None (candidate not yet proposed)    View
96085  CVE-2016-9265  Candidate  The printMP3Headers function in listmp3.c in Libming 0.4.7 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted mp3 file.  Assigned (20161110)  None (candidate not yet proposed)    View

Page 19217 of 20943, showing 5 records out of 104715 total, starting on record 96081, ending on 96085

Actions