CVE List

Id CVE No. Status Description Phase Votes Comments Actions
104444  CVE-2017-7624  Candidate  The iw_read_bmp_file function in imagew-bmp.c in libimageworsener.a in ImageWorsener 1.3.0 allows remote attackers to consume an amount of available memory via a crafted file.  Assigned (20170410)  None (candidate not yet proposed)    View
39164  CVE-2009-1729  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in Sun Java System Communications Express 6 2005Q4 (aka 6.2) and 6.3 allow remote attackers to inject arbitrary web script or HTML via (1) the abperson_displayName parameter to uwc/abs/search.xml in the Add Contact implementation in the Personal Address Book component or (2) the temporaryCalendars parameter to uwc/base/UWCMain.  Assigned (20090520)  None (candidate not yet proposed)    View
104700  CVE-2017-7880  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170414)  None (candidate not yet proposed)    View
39420  CVE-2009-1985  Candidate  Unspecified vulnerability in the Network Authentication component in Oracle Database 9.2.0.8, 9.2.0.8DV, 10.1.0.5, and 10.2.0.4 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.  Assigned (20090608)  None (candidate not yet proposed)    View
39676  CVE-2009-2241  Candidate  Cross-site scripting (XSS) vulnerability in search.asp in ASP Inline Corporate Calendar allows remote attackers to inject arbitrary web script or HTML via the keyword parameter.  Assigned (20090627)  None (candidate not yet proposed)    View

Page 20655 of 20943, showing 5 records out of 104715 total, starting on record 103271, ending on 103275

Actions