CVE List

Id CVE No. Status Description Phase Votes Comments Actions
33515  CVE-2008-3398  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in XRMS CRM 1.99.2 allow remote attackers to inject arbitrary web script or HTML via the msg parameter to unspecified components, possibly including login.php. NOTE: this may overlap CVE-2008-1129.  Assigned (20080731)  None (candidate not yet proposed)    View
99051  CVE-2017-2231  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20161201)  None (candidate not yet proposed)    View
33771  CVE-2008-3654  Candidate  Unspecified vulnerability in TikiWiki CMS/Groupware before 2.0 allows attackers to obtain "path and PHP configuration" via unknown vectors.  Assigned (20080812)  None (candidate not yet proposed)    View
99307  CVE-2017-2487  Candidate  An issue was discovered in certain Apple products. iOS before 10.3 is affected. macOS before 10.12.4 is affected. tvOS before 10.2 is affected. watchOS before 3.2 is affected. The issue involves the "FontParser" component. It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted font file.  Assigned (20161201)  None (candidate not yet proposed)    View
34027  CVE-2008-3910  Candidate  dns2tcp before 0.4.1 does not properly handle negative values in a certain length field in the input argument to the (1) dns_simple_decode or (2) dns_decode function, which allows remote attackers to overwrite a buffer and have unspecified other impact.  Assigned (20080904)  None (candidate not yet proposed)    View

Page 19336 of 20943, showing 5 records out of 104715 total, starting on record 96676, ending on 96680

Actions