CVE List

Id CVE No. Status Description Phase Votes Comments Actions
102141  CVE-2017-5321  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170109)  None (candidate not yet proposed)    View
36861  CVE-2008-6744  Candidate  Cross-site request forgery (CSRF) vulnerability in Cybozu Office 6, Cybozu Dezie before 6.0(1.0), and Cybozu Garoon 2.0.0 through 2.1.3 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.  Assigned (20090423)  None (candidate not yet proposed)    View
102397  CVE-2017-5577  Candidate  The vc4_get_bcl function in drivers/gpu/drm/vc4/vc4_gem.c in the VideoCore DRM driver in the Linux kernel before 4.9.7 does not set an errno value upon certain overflow detections, which allows local users to cause a denial of service (incorrect pointer dereference and OOPS) via inconsistent size values in a VC4_SUBMIT_CL ioctl call.  Assigned (20170124)  None (candidate not yet proposed)    View
37117  CVE-2008-7000  Candidate  PHP remote file inclusion vulnerability in index.php in PHPAuction 3.2 allows remote attackers to execute arbitrary PHP code via a URL in the lan parameter. NOTE: this might be related to CVE-2005-2255.1.  Assigned (20090817)  None (candidate not yet proposed)    View
102653  CVE-2017-5833  Candidate  Cross-site scripting (XSS) vulnerability in the invocation code generation for interstitial zones in Revive Adserver before 4.0.1 allows remote attackers to inject arbitrary web script or HTML via unspecified parameters.  Assigned (20170201)  None (candidate not yet proposed)    View

Page 20760 of 20943, showing 5 records out of 104715 total, starting on record 103796, ending on 103800

Actions