CVE List

Id CVE No. Status Description Phase Votes Comments Actions
104183  CVE-2017-7363  Candidate  Pixie 1.0.4 allows an admin/index.php s=publish&m=module&x= XSS attack.  Assigned (20170330)  None (candidate not yet proposed)    View
38903  CVE-2009-1468  Candidate  Multiple SQL injection vulnerabilities in the search form in server/webmail.php in the Groupware component in IceWarp eMail Server and WebMail Server before 9.4.2 allow remote authenticated users to execute arbitrary SQL commands via the (1) sql and (2) order_by elements in an XML search query.  Assigned (20090428)  None (candidate not yet proposed)    View
104439  CVE-2017-7619  Candidate  In ImageMagick 7.0.4-9, an infinite loop can occur because of a floating-point rounding error in some of the color algorithms. This affects ModulateHSL, ModulateHCL, ModulateHCLp, ModulateHSB, ModulateHSI, ModulateHSV, ModulateHWB, ModulateLCHab, and ModulateLCHuv.  Assigned (20170410)  None (candidate not yet proposed)    View
39159  CVE-2009-1724  Candidate  Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari before 4.0.2, as used on iPhone OS before 3.1, iPhone OS before 3.1.1 for iPod touch, and other platforms, allows remote attackers to inject arbitrary web script or HTML via vectors related to parent and top objects.  Assigned (20090520)  None (candidate not yet proposed)    View
104695  CVE-2017-7875  Candidate  In wallpaper.c in feh before v2.18.3, if a malicious client pretends to be the E17 window manager, it is possible to trigger an out-of-boundary heap write while receiving an IPC message. An integer overflow leads to a buffer overflow and/or a double free.  Assigned (20170414)  None (candidate not yet proposed)    View

Page 20286 of 20943, showing 5 records out of 104715 total, starting on record 101426, ending on 101430

Actions