CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
29945 | CVE-2007-6588 | Candidate | Cross-site scripting (XSS) vulnerability in PHCDownload 1.10 allows remote attackers to inject arbitrary web script or HTML via the username field in an unspecified component. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | Assigned (20071228) | None (candidate not yet proposed) | View | |
95481 | CVE-2016-8661 | Candidate | Little Snitch version 3.0 through 3.6.1 suffer from a buffer overflow vulnerability that could be locally exploited which could lead to an escalation of privileges (EoP) and unauthorised ring0 access to the operating system. The buffer overflow is related to insufficient checking of parameters to the "OSMalloc" and "copyin" kernel API calls. | Assigned (20161014) | None (candidate not yet proposed) | View | |
30201 | CVE-2008-0084 | Candidate | Unspecified vulnerability in the TCP/IP support in Microsoft Windows Vista allows remote DHCP servers to cause a denial of service (hang and restart) via a crafted DHCP packet. | Assigned (20080103) | None (candidate not yet proposed) | View | |
95737 | CVE-2016-8917 | Candidate | IBM Sterling Order Management 9.2 - 9.5 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM Reference #: 2000943. | Assigned (20161025) | None (candidate not yet proposed) | View | |
30457 | CVE-2008-0340 | Candidate | Multiple unspecified vulnerabilities in Oracle Database 9.0.1.5 FIPS+, 9.2.0.8, 9.2.0.8DV, 10.1.0.5, and 10.2.0.3 have unknown impact and remote attack vectors, related to the (1) Advanced Queuing component (DB02) and (2) Oracle Spatial component (DB04). | Assigned (20080117) | None (candidate not yet proposed) | View |
Page 20410 of 20943, showing 5 records out of 104715 total, starting on record 102046, ending on 102050