CVE List

Id CVE No. Status Description Phase Votes Comments Actions
38898  CVE-2009-1463  Candidate  Static code injection vulnerability in razorCMS before 0.4 allows remote attackers to inject arbitrary PHP code into any page by saving content as a .php file.  Assigned (20090428)  None (candidate not yet proposed)    View
104434  CVE-2017-7614  Candidate  elflink.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, has a "member access within null pointer" undefined behavior issue, which might allow remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via an "int main() {return 0;}" program.  Assigned (20170409)  None (candidate not yet proposed)    View
39154  CVE-2009-1719  Candidate  The Aqua Look and Feel for Java implementation in Java 1.5 on Mac OS X 10.5 allows remote attackers to execute arbitrary code via a call to the undocumented apple.laf.CColourUIResource constructor with a crafted value in the first argument, which is dereferenced as a pointer.  Assigned (20090520)  None (candidate not yet proposed)    View
104690  CVE-2017-7870  Candidate  LibreOffice before 2017-01-02 has an out-of-bounds write caused by a heap-based buffer overflow related to the tools::Polygon::Insert function in tools/source/generic/poly.cxx.  Assigned (20170414)  None (candidate not yet proposed)    View
39410  CVE-2009-1975  Candidate  Unspecified vulnerability in the WebLogic Server component in BEA Product Suite 10.3 allows remote attackers to affect confidentiality, integrity, and availability, related to the WLS Console Package.  Assigned (20090608)  None (candidate not yet proposed)    View

Page 19884 of 20943, showing 5 records out of 104715 total, starting on record 99416, ending on 99420

Actions