CVE List

Id CVE No. Status Description Phase Votes Comments Actions
39149  CVE-2009-1714  Candidate  Cross-site scripting (XSS) vulnerability in Web Inspector in WebKit in Apple Safari before 4.0 allows user-assisted remote attackers to inject arbitrary web script or HTML, and read local files, via vectors related to the improper escaping of HTML attributes.  Assigned (20090520)  None (candidate not yet proposed)    View
104685  CVE-2017-7865  Candidate  FFmpeg before 2017-01-24 has an out-of-bounds write caused by a heap-based buffer overflow related to the ipvideo_decode_block_opcode_0xA function in libavcodec/interplayvideo.c and the avcodec_align_dimensions2 function in libavcodec/utils.c.  Assigned (20170414)  None (candidate not yet proposed)    View
39405  CVE-2009-1970  Candidate  Unspecified vulnerability in the Listener component in Oracle Database 9.2.0.8, 9.2.0.8DV, 10.1.0.5, 10.2.0.4, and 11.1.0.7 allows remote attackers to affect availability via unknown vectors, a different vulnerability than CVE-2009-0991.  Assigned (20090608)  None (candidate not yet proposed)    View
39661  CVE-2009-2226  Candidate  Cross-site scripting (XSS) vulnerability in Let"s PHP! Tree BBS 2004/11/23 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20090626)  None (candidate not yet proposed)    View
39917  CVE-2009-2482  Candidate  The pam_unix module in OpenPAM in NetBSD 4.0 before 4.0.2 and 5.0 before 5.0.1 allows local users to change the current root password if it is already known, even when they are not in the wheel group.  Assigned (20090716)  None (candidate not yet proposed)    View

Page 19491 of 20943, showing 5 records out of 104715 total, starting on record 97451, ending on 97455

Actions