CVE List

Id CVE No. Status Description Phase Votes Comments Actions
92140  CVE-2016-5321  Candidate  The DumpModeDecode function in libtiff 4.0.6 and earlier allows attackers to cause a denial of service (invalid read and crash) via a crafted tiff image.  Assigned (20160606)  None (candidate not yet proposed)    View
26860  CVE-2007-3503  Candidate  The Javadoc tool in Sun JDK 6 and JDK 5.0 Update 11 can generate HTML documentation pages that contain cross-site scripting (XSS) vulnerabilities, which allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20070629)  None (candidate not yet proposed)    View
92396  CVE-2016-5577  Candidate  Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware 8.4.0 and 8.5.1 through 8.5.3 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Outside In Filters, a different vulnerability than CVE-2016-5558, CVE-2016-5574, CVE-2016-5578, CVE-2016-5579, and CVE-2016-5588.  Assigned (20160616)  None (candidate not yet proposed)    View
27116  CVE-2007-3759  Candidate  Safari in Apple iPhone 1.1.1, when requested to disable Javascript, does not disable it until Safari is restarted, which might leave Safari open to attacks that the user does not expect.  Assigned (20070712)  None (candidate not yet proposed)    View
92652  CVE-2016-5832  Candidate  The customizer in WordPress before 4.5.3 allows remote attackers to bypass intended redirection restrictions via unspecified vectors.  Assigned (20160623)  None (candidate not yet proposed)    View

Page 19392 of 20943, showing 5 records out of 104715 total, starting on record 96956, ending on 96960

Actions