CVE List

Id CVE No. Status Description Phase Votes Comments Actions
38896  CVE-2009-1461  Candidate  Cross-site scripting (XSS) vulnerability in the Create New Page form in razorCMS 0.3 RC2 and earlier allows remote authenticated users to inject arbitrary web script or HTML via the Page Title field.  Assigned (20090428)  None (candidate not yet proposed)    View
104432  CVE-2017-7612  Candidate  The check_sysv_hash function in elflint.c in elfutils 0.168 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted ELF file.  Assigned (20170409)  None (candidate not yet proposed)    View
39152  CVE-2009-1717  Candidate  Integer overflow in Terminal in Apple Mac OS X 10.5 before 10.5.7 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted size value in a CSI[4 xterm resize escape sequence that triggers a heap-based buffer overflow.  Assigned (20090520)  None (candidate not yet proposed)    View
104688  CVE-2017-7868  Candidate  International Components for Unicode (ICU) for C/C++ before 2017-02-13 has an out-of-bounds write caused by a heap-based buffer overflow related to the utf8TextAccess function in common/utext.cpp and the utext_moveIndex32* function.  Assigned (20170414)  None (candidate not yet proposed)    View
39408  CVE-2009-1973  Candidate  Unspecified vulnerability in the Virtual Private Database component in Oracle Database 10.1.0.5, 10.2.0.4, and 11.1.0.7 allows remote authenticated users to affect confidentiality and integrity, related to VPD policies.  Assigned (20090608)  None (candidate not yet proposed)    View

Page 19721 of 20943, showing 5 records out of 104715 total, starting on record 98601, ending on 98605

Actions