CVE List

Id CVE No. Status Description Phase Votes Comments Actions
49337  CVE-2011-1425  Candidate  xslt.c in XML Security Library (aka xmlsec) before 1.2.17, as used in WebKit and other products, when XSLT is enabled, allows remote attackers to create or overwrite arbitrary files via vectors involving the libxslt output extension and a ds:Transform element during signature verification.  Assigned (20110314)  None (candidate not yet proposed)    View
89901  CVE-2016-3082  Candidate  XSLTResult in Apache Struts 2.x before 2.3.20.2, 2.3.24.x before 2.3.24.2, and 2.3.28.x before 2.3.28.1 allows remote attackers to execute arbitrary code via the stylesheet location parameter.  Assigned (20160310)  None (candidate not yet proposed)    View
7773  CVE-2003-0949  Candidate  xsok 1.02 does not properly drop privileges before finding and executing the "gunzip" program, which allows local users to execute arbitrary commands.  Assigned (20031114)  None (candidate not yet proposed)    View
988  CVE-1999-1008  Entry  xsoldier program allows local users to gain root access via a long argument.        View
87355  CVE-2016-1000117  Candidate  XSS & SQLi in HugeIT slideshow v1.0.4  Assigned (20160720)  None (candidate not yet proposed)    View

Page 20884 of 20943, showing 5 records out of 104715 total, starting on record 104416, ending on 104420

Actions