CVE List

Id CVE No. Status Description Phase Votes Comments Actions
87728  CVE-2016-10216  Candidate  An issue was discovered in IT ITems DataBase (ITDB) through 1.23. The vulnerability exists due to insufficient filtration of user-supplied data in the "value" HTTP POST parameter passed to the "itdb-1.23/js/DataTables-1.8.2/examples/examples_support/editable_ajax.php" URL. An attacker could execute arbitrary HTML and script code in a browser in the context of the vulnerable website.  Assigned (20170209)  None (candidate not yet proposed)    View
87729  CVE-2016-10217  Candidate  The pdf14_open function in base/gdevp14.c in Artifex Software, Inc. Ghostscript 9.20 allows remote attackers to cause a denial of service (use-after-free and application crash) via a crafted file that is mishandled in the color management module.  Assigned (20170209)  None (candidate not yet proposed)    View
87730  CVE-2016-10218  Candidate  The pdf14_pop_transparency_group function in base/gdevp14.c in the PDF Transparency module in Artifex Software, Inc. Ghostscript 9.20 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted file.  Assigned (20170209)  None (candidate not yet proposed)    View
87731  CVE-2016-10219  Candidate  The intersect function in base/gxfill.c in Artifex Software, Inc. Ghostscript 9.20 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted file.  Assigned (20170209)  None (candidate not yet proposed)    View
87733  CVE-2016-10220  Candidate  The gs_makewordimagedevice function in base/gsdevmem.c in Artifex Software, Inc. Ghostscript 9.20 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted file that is mishandled in the PDF Transparency module.  Assigned (20170209)  None (candidate not yet proposed)    View

Page 19934 of 20943, showing 5 records out of 104715 total, starting on record 99666, ending on 99670

Actions