CVE List

Id CVE No. Status Description Phase Votes Comments Actions
102652  CVE-2017-5832  Candidate  Cross-site scripting (XSS) vulnerability in Revive Adserver before 4.0.1 allows remote authenticated users to inject arbitrary web script or HTML via the user"s email address.  Assigned (20170201)  None (candidate not yet proposed)    View
37372  CVE-2008-7255  Candidate  login_screen.tcl in aMSN (aka Alvaro"s Messenger) before 0.97.1 saves a password after logout, which allows physically proximate attackers to hijack a session by visiting an unattended workstation.  Assigned (20100420)  None (candidate not yet proposed)    View
102908  CVE-2017-6088  Candidate  Multiple SQL injection vulnerabilities in EyesOfNetwork (aka EON) 5.0 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) bp_name, (2) display, (3) search, or (4) equipment parameter in module/monitoring_ged/ged_functions.php or the (5) type parameter in monitoring_ged/ajax.php.  Assigned (20170218)  None (candidate not yet proposed)    View
37628  CVE-2009-0193  Candidate  Heap-based buffer overflow in Adobe Acrobat Reader 9 before 9.1, 8 before 8.1.4, and 7 before 7.1.1 allows remote attackers to execute arbitrary code via a PDF file with a malformed JBIG2 symbol dictionary segment, a different vulnerability than CVE-2009-1061 and CVE-2009-1062.  Assigned (20090120)  None (candidate not yet proposed)    View
103164  CVE-2017-6344  Candidate  XML External Entity (XXE) vulnerability in Grails PDF Plugin 0.6 allows remote attackers to read arbitrary files via a crafted XML document.  Assigned (20170226)  None (candidate not yet proposed)    View

Page 20071 of 20943, showing 5 records out of 104715 total, starting on record 100351, ending on 100355

Actions