CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
39149 | CVE-2009-1714 | Candidate | Cross-site scripting (XSS) vulnerability in Web Inspector in WebKit in Apple Safari before 4.0 allows user-assisted remote attackers to inject arbitrary web script or HTML, and read local files, via vectors related to the improper escaping of HTML attributes. | Assigned (20090520) | None (candidate not yet proposed) | View | |
104685 | CVE-2017-7865 | Candidate | FFmpeg before 2017-01-24 has an out-of-bounds write caused by a heap-based buffer overflow related to the ipvideo_decode_block_opcode_0xA function in libavcodec/interplayvideo.c and the avcodec_align_dimensions2 function in libavcodec/utils.c. | Assigned (20170414) | None (candidate not yet proposed) | View | |
39405 | CVE-2009-1970 | Candidate | Unspecified vulnerability in the Listener component in Oracle Database 9.2.0.8, 9.2.0.8DV, 10.1.0.5, 10.2.0.4, and 11.1.0.7 allows remote attackers to affect availability via unknown vectors, a different vulnerability than CVE-2009-0991. | Assigned (20090608) | None (candidate not yet proposed) | View | |
39661 | CVE-2009-2226 | Candidate | Cross-site scripting (XSS) vulnerability in Let"s PHP! Tree BBS 2004/11/23 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | Assigned (20090626) | None (candidate not yet proposed) | View | |
39917 | CVE-2009-2482 | Candidate | The pam_unix module in OpenPAM in NetBSD 4.0 before 4.0.2 and 5.0 before 5.0.1 allows local users to change the current root password if it is already known, even when they are not in the wheel group. | Assigned (20090716) | None (candidate not yet proposed) | View |
Page 19491 of 20943, showing 5 records out of 104715 total, starting on record 97451, ending on 97455