CVE List

Id CVE No. Status Description Phase Votes Comments Actions
38894  CVE-2009-1459  Candidate  Cross-site request forgery (CSRF) vulnerability in razorCMS before 0.4 allows remote attackers to hijack the authentication of administrators for requests that create a web page containing PHP code.  Assigned (20090428)  None (candidate not yet proposed)    View
104430  CVE-2017-7610  Candidate  The check_group function in elflint.c in elfutils 0.168 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted ELF file.  Assigned (20170409)  None (candidate not yet proposed)    View
39150  CVE-2009-1715  Candidate  Cross-site scripting (XSS) vulnerability in Web Inspector in WebKit in Apple Safari before 4.0 allows user-assisted remote attackers to inject arbitrary web script or HTML, and read local files, via vectors related to script execution with incorrect privileges.  Assigned (20090520)  None (candidate not yet proposed)    View
104686  CVE-2017-7866  Candidate  FFmpeg before 2017-01-23 has an out-of-bounds write caused by a stack-based buffer overflow related to the decode_zbuf function in libavcodec/pngdec.c.  Assigned (20170414)  None (candidate not yet proposed)    View
39406  CVE-2009-1971  Candidate  Unspecified vulnerability in the Data Pump component in Oracle Database 10.1.0.5, 10.2.0.3, and 11.1.0.7 allows remote authenticated users to affect integrity via unknown vectors.  Assigned (20090608)  None (candidate not yet proposed)    View

Page 19570 of 20943, showing 5 records out of 104715 total, starting on record 97846, ending on 97850

Actions