CVE List

Id CVE No. Status Description Phase Votes Comments Actions
30709  CVE-2008-0592  Candidate  Mozilla Firefox before 2.0.0.12 and SeaMonkey before 1.1.8 allows user-assisted remote attackers to cause a denial of service via a plain .txt file with a "Content-Disposition: attachment" and an invalid "Content-Type: plain/text," which prevents Firefox from rendering future plain text files within the browser.  Assigned (20080205)  None (candidate not yet proposed)    View
96245  CVE-2016-9425  Candidate  An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Heap-based buffer overflow in the addMultirowsForm function in w3m allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTML page.  Assigned (20161118)  None (candidate not yet proposed)    View
30965  CVE-2008-0848  Candidate  Cross-site scripting (XSS) vulnerability in lostsheep.php in Crafty Syntax Live Help (CSLH) before 2.14.16, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. NOTE: the versions claimed by the original researcher are probably incorrect.  Assigned (20080220)  None (candidate not yet proposed)    View
96501  CVE-2016-9681  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in Serendipity before 2.0.5 allow remote authenticated users to inject arbitrary web script or HTML via a category or directory name.  Assigned (20161130)  None (candidate not yet proposed)    View
31221  CVE-2008-1104  Candidate  Stack-based buffer overflow in Foxit Reader before 2.3 build 2912 allows user-assisted remote attackers to execute arbitrary code via a crafted PDF file, related to the util.printf JavaScript function and floating point specifiers in format strings.  Assigned (20080229)  None (candidate not yet proposed)    View

Page 19504 of 20943, showing 5 records out of 104715 total, starting on record 97516, ending on 97520

Actions