CVE List

Id CVE No. Status Description Phase Votes Comments Actions
37374  CVE-2008-7257  Candidate  CRLF injection vulnerability in +webvpn+/index.html in WebVPN on Cisco Adaptive Security Appliances (ASA) 5580 series devices with software before 8.1(2) allows remote attackers to inject arbitrary HTTP headers as demonstrated by a redirect attack involving a %0d%0aLocation%3a sequence in a URI, or conduct HTTP response splitting attacks via unspecified vectors, aka Bug ID CSCsr09163.  Assigned (20100622)  None (candidate not yet proposed)    View
102910  CVE-2017-6090  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170218)  None (candidate not yet proposed)    View
37630  CVE-2009-0195  Candidate  Heap-based buffer overflow in Xpdf 3.02pl2 and earlier, CUPS 1.3.9, and probably other products, allows remote attackers to execute arbitrary code via a PDF file with crafted JBIG2 symbol dictionary segments.  Assigned (20090120)  None (candidate not yet proposed)    View
103166  CVE-2017-6346  Candidate  Race condition in net/packet/af_packet.c in the Linux kernel before 4.9.13 allows local users to cause a denial of service (use-after-free) or possibly have unspecified other impact via a multithreaded application that makes PACKET_FANOUT setsockopt system calls.  Assigned (20170226)  None (candidate not yet proposed)    View
37886  CVE-2009-0451  Candidate  SQL injection vulnerability in Skalfa SkaLinks 1.5 allows remote attackers to execute arbitrary SQL commands via the Admin name field to the default URI under admin/.  Assigned (20090205)  None (candidate not yet proposed)    View

Page 20230 of 20943, showing 5 records out of 104715 total, starting on record 101146, ending on 101150

Actions