CVE List

Id CVE No. Status Description Phase Votes Comments Actions
104202  CVE-2017-7382  Candidate  The PdfFontFactory.cpp:200:88 code in PoDoFo 0.9.5 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted PDF document.  Assigned (20170331)  None (candidate not yet proposed)    View
38922  CVE-2009-1487  Candidate  SQL injection vulnerability in pages/login.php in FunGamez RC1 allows remote attackers to execute arbitrary SQL commands via the login_user (aka username) parameter. NOTE: some of these details are obtained from third party information.  Assigned (20090429)  None (candidate not yet proposed)    View
104458  CVE-2017-7638  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170410)  None (candidate not yet proposed)    View
39178  CVE-2009-1743  Candidate  Directory traversal vulnerability in InstallHFZ.exe 6.5.201.0 in Pinnacle Hollywood Effects 6, a module in Pinnacle Systems Pinnacle Studio 12, allows remote attackers to create and overwrite arbitrary files via a filename containing a .. (dot dot backslash) sequence in a Hollywood FX Compressed Archive (.hfz) file. NOTE: this can be leveraged for code execution by decompressing a file to a Startup folder. NOTE: some of these details are obtained from third party information.  Assigned (20090520)  None (candidate not yet proposed)    View
104714  CVE-2017-7894  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170417)  None (candidate not yet proposed)    View

Page 866 of 20943, showing 5 records out of 104715 total, starting on record 4326, ending on 4330

Actions