CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
82958 | CVE-2015-5681 | Candidate | Unrestricted file upload vulnerability in upload.php in the Powerplay Gallery plugin 3.3 for WordPress allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in *_uploadfolder/big/. | Assigned (20150727) | None (candidate not yet proposed) | View | |
17678 | CVE-2006-1574 | Candidate | Cross-site scripting (XSS) vulnerability in Groupmax World Wide Web, World Wide Web Desktop, World Wide Web for Scheduler, and Desktop for Scheduler, allows remote attackers to inject arbitrary web script or HTML via unknown attack vectors. | Assigned (20060331) | None (candidate not yet proposed) | View | |
83214 | CVE-2015-5937 | Candidate | ImageIO in Apple iOS before 9.1, OS X before 10.11.1, and watchOS before 2.0.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via crafted metadata in an image, a different vulnerability than CVE-2015-5935, CVE-2015-5936, and CVE-2015-5939. | Assigned (20150806) | None (candidate not yet proposed) | View | |
17934 | CVE-2006-1830 | Candidate | Sun Java Studio Enterprise 8, when installed as root, creates certain files with world-writable permissions, which allows local users to execute arbitrary commands via unspecified vectors. | Assigned (20060419) | None (candidate not yet proposed) | View | |
83470 | CVE-2015-6193 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20150814) | None (candidate not yet proposed) | View |
Page 1141 of 20943, showing 5 records out of 104715 total, starting on record 5701, ending on 5705