CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
104441 | CVE-2017-7621 | Candidate | Cross Site Scripting Vulnerability in core-eMLi in AuroMeera Technometrix Pvt. Ltd. eMLi V1.0 allows an Attacker to send malicious code, generally in the form of a browser-side script, to a different end user via the page parameter to code/student_portal/home.php. The affected versions are eMLi School Management 1.0, eMLi College Campus Management 1.0, and eMLi University Management 1.0. | Assigned (20170410) | None (candidate not yet proposed) | View | |
39161 | CVE-2009-1726 | Candidate | Heap-based buffer overflow in ColorSync in Apple Mac OS X 10.4.11 and 10.5 before 10.5.8 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted image containing an embedded ColorSync profile. | Assigned (20090520) | None (candidate not yet proposed) | View | |
104697 | CVE-2017-7877 | Candidate | CSRF vulnerability in flatCore version 1.4.6 allows remote attackers to modify CMS configurations. | Assigned (20170414) | None (candidate not yet proposed) | View | |
39417 | CVE-2009-1982 | Candidate | Unspecified vulnerability in the Oracle Applications Framework component in Oracle E-Business Suite 11.5.10.2 and 12.0.6 allows remote attackers to affect integrity via unknown vectors. | Assigned (20090608) | None (candidate not yet proposed) | View | |
39673 | CVE-2009-2238 | Candidate | Unrestricted file upload vulnerability in includes/shared_scripts/wysiwyg_editor/assetmanager/assetmanager.asp in DMXReady Registration Manager 1.1 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in assets/webblogmanager. | Assigned (20090627) | None (candidate not yet proposed) | View |
Page 20442 of 20943, showing 5 records out of 104715 total, starting on record 102206, ending on 102210