CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
92140 | CVE-2016-5321 | Candidate | The DumpModeDecode function in libtiff 4.0.6 and earlier allows attackers to cause a denial of service (invalid read and crash) via a crafted tiff image. | Assigned (20160606) | None (candidate not yet proposed) | View | |
26860 | CVE-2007-3503 | Candidate | The Javadoc tool in Sun JDK 6 and JDK 5.0 Update 11 can generate HTML documentation pages that contain cross-site scripting (XSS) vulnerabilities, which allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | Assigned (20070629) | None (candidate not yet proposed) | View | |
92396 | CVE-2016-5577 | Candidate | Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware 8.4.0 and 8.5.1 through 8.5.3 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Outside In Filters, a different vulnerability than CVE-2016-5558, CVE-2016-5574, CVE-2016-5578, CVE-2016-5579, and CVE-2016-5588. | Assigned (20160616) | None (candidate not yet proposed) | View | |
27116 | CVE-2007-3759 | Candidate | Safari in Apple iPhone 1.1.1, when requested to disable Javascript, does not disable it until Safari is restarted, which might leave Safari open to attacks that the user does not expect. | Assigned (20070712) | None (candidate not yet proposed) | View | |
92652 | CVE-2016-5832 | Candidate | The customizer in WordPress before 4.5.3 allows remote attackers to bypass intended redirection restrictions via unspecified vectors. | Assigned (20160623) | None (candidate not yet proposed) | View |
Page 19392 of 20943, showing 5 records out of 104715 total, starting on record 96956, ending on 96960