CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
33515 | CVE-2008-3398 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in XRMS CRM 1.99.2 allow remote attackers to inject arbitrary web script or HTML via the msg parameter to unspecified components, possibly including login.php. NOTE: this may overlap CVE-2008-1129. | Assigned (20080731) | None (candidate not yet proposed) | View | |
99051 | CVE-2017-2231 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20161201) | None (candidate not yet proposed) | View | |
33771 | CVE-2008-3654 | Candidate | Unspecified vulnerability in TikiWiki CMS/Groupware before 2.0 allows attackers to obtain "path and PHP configuration" via unknown vectors. | Assigned (20080812) | None (candidate not yet proposed) | View | |
99307 | CVE-2017-2487 | Candidate | An issue was discovered in certain Apple products. iOS before 10.3 is affected. macOS before 10.12.4 is affected. tvOS before 10.2 is affected. watchOS before 3.2 is affected. The issue involves the "FontParser" component. It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted font file. | Assigned (20161201) | None (candidate not yet proposed) | View | |
34027 | CVE-2008-3910 | Candidate | dns2tcp before 0.4.1 does not properly handle negative values in a certain length field in the input argument to the (1) dns_simple_decode or (2) dns_decode function, which allows remote attackers to overwrite a buffer and have unspecified other impact. | Assigned (20080904) | None (candidate not yet proposed) | View |
Page 19336 of 20943, showing 5 records out of 104715 total, starting on record 96676, ending on 96680