CVE List

Id CVE No. Status Description Phase Votes Comments Actions
29945  CVE-2007-6588  Candidate  Cross-site scripting (XSS) vulnerability in PHCDownload 1.10 allows remote attackers to inject arbitrary web script or HTML via the username field in an unspecified component. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.  Assigned (20071228)  None (candidate not yet proposed)    View
95481  CVE-2016-8661  Candidate  Little Snitch version 3.0 through 3.6.1 suffer from a buffer overflow vulnerability that could be locally exploited which could lead to an escalation of privileges (EoP) and unauthorised ring0 access to the operating system. The buffer overflow is related to insufficient checking of parameters to the "OSMalloc" and "copyin" kernel API calls.  Assigned (20161014)  None (candidate not yet proposed)    View
30201  CVE-2008-0084  Candidate  Unspecified vulnerability in the TCP/IP support in Microsoft Windows Vista allows remote DHCP servers to cause a denial of service (hang and restart) via a crafted DHCP packet.  Assigned (20080103)  None (candidate not yet proposed)    View
95737  CVE-2016-8917  Candidate  IBM Sterling Order Management 9.2 - 9.5 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM Reference #: 2000943.  Assigned (20161025)  None (candidate not yet proposed)    View
30457  CVE-2008-0340  Candidate  Multiple unspecified vulnerabilities in Oracle Database 9.0.1.5 FIPS+, 9.2.0.8, 9.2.0.8DV, 10.1.0.5, and 10.2.0.3 have unknown impact and remote attack vectors, related to the (1) Advanced Queuing component (DB02) and (2) Oracle Spatial component (DB04).  Assigned (20080117)  None (candidate not yet proposed)    View

Page 20410 of 20943, showing 5 records out of 104715 total, starting on record 102046, ending on 102050

Actions