CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
38898 | CVE-2009-1463 | Candidate | Static code injection vulnerability in razorCMS before 0.4 allows remote attackers to inject arbitrary PHP code into any page by saving content as a .php file. | Assigned (20090428) | None (candidate not yet proposed) | View | |
104434 | CVE-2017-7614 | Candidate | elflink.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, has a "member access within null pointer" undefined behavior issue, which might allow remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via an "int main() {return 0;}" program. | Assigned (20170409) | None (candidate not yet proposed) | View | |
39154 | CVE-2009-1719 | Candidate | The Aqua Look and Feel for Java implementation in Java 1.5 on Mac OS X 10.5 allows remote attackers to execute arbitrary code via a call to the undocumented apple.laf.CColourUIResource constructor with a crafted value in the first argument, which is dereferenced as a pointer. | Assigned (20090520) | None (candidate not yet proposed) | View | |
104690 | CVE-2017-7870 | Candidate | LibreOffice before 2017-01-02 has an out-of-bounds write caused by a heap-based buffer overflow related to the tools::Polygon::Insert function in tools/source/generic/poly.cxx. | Assigned (20170414) | None (candidate not yet proposed) | View | |
39410 | CVE-2009-1975 | Candidate | Unspecified vulnerability in the WebLogic Server component in BEA Product Suite 10.3 allows remote attackers to affect confidentiality, integrity, and availability, related to the WLS Console Package. | Assigned (20090608) | None (candidate not yet proposed) | View |
Page 19884 of 20943, showing 5 records out of 104715 total, starting on record 99416, ending on 99420