CVE List

Id CVE No. Status Description Phase Votes Comments Actions
104177  CVE-2017-7357  Candidate  Hipchat Server before 2.2.3 allows remote authenticated users with Server Administrator level privileges to execute arbitrary code by importing a file.  Assigned (20170330)  None (candidate not yet proposed)    View
38897  CVE-2009-1462  Candidate  The Security Manager in razorCMS before 0.4 does not verify the permissions of every file owned by the apache user account, which is inconsistent with the documentation and allows local users to have an unspecified impact.  Assigned (20090428)  None (candidate not yet proposed)    View
104433  CVE-2017-7613  Candidate  elflint.c in elfutils 0.168 does not validate the number of sections and the number of segments, which allows remote attackers to cause a denial of service (memory consumption) via a crafted ELF file.  Assigned (20170409)  None (candidate not yet proposed)    View
39153  CVE-2009-1718  Candidate  WebKit in Apple Safari before 4.0 allows user-assisted remote attackers to obtain sensitive information via vectors involving drag events and the dragging of content over a crafted web page.  Assigned (20090520)  None (candidate not yet proposed)    View
104689  CVE-2017-7869  Candidate  GnuTLS before 2017-02-20 has an out-of-bounds write caused by an integer overflow and heap-based buffer overflow related to the cdk_pkt_read function in opencdk/read-packet.c. This issue (which is a subset of the vendor"s GNUTLS-SA-2017-3 report) is fixed in 3.5.10.  Assigned (20170414)  None (candidate not yet proposed)    View

Page 19809 of 20943, showing 5 records out of 104715 total, starting on record 99041, ending on 99045

Actions