CVE List

Id CVE No. Status Description Phase Votes Comments Actions
104431  CVE-2017-7611  Candidate  The check_symtab_shndx function in elflint.c in elfutils 0.168 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted ELF file.  Assigned (20170409)  None (candidate not yet proposed)    View
39151  CVE-2009-1716  Candidate  CFNetwork in Apple Safari before 4.0 on Windows does not properly protect the temporary files created for downloads, which allows local users to obtain sensitive information by reading these files.  Assigned (20090520)  None (candidate not yet proposed)    View
104687  CVE-2017-7867  Candidate  International Components for Unicode (ICU) for C/C++ before 2017-02-13 has an out-of-bounds write caused by a heap-based buffer overflow related to the utf8TextAccess function in common/utext.cpp and the utext_setNativeIndex* function.  Assigned (20170414)  None (candidate not yet proposed)    View
39407  CVE-2009-1972  Candidate  Unspecified vulnerability in the Auditing component in Oracle Database 9.2.0.8, 9.2.0.8DV, 10.1.0.5, 10.2.0.4, and 11.1.0.7 allows remote authenticated users to affect integrity, related to DBMS_SYS_SQL and DBMS_SQL.  Assigned (20090608)  None (candidate not yet proposed)    View
39663  CVE-2009-2228  Candidate  Cross-site scripting (XSS) vulnerability in engine.php in Kasseler CMS allows remote attackers to inject arbitrary web script or HTML via the url parameter in a redirect action.  Assigned (20090626)  None (candidate not yet proposed)    View

Page 19653 of 20943, showing 5 records out of 104715 total, starting on record 98261, ending on 98265

Actions