CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12559  CVE-2005-1353  Candidate  The forum.pl script allows remote attackers to read arbitrary files via a full pathname in the argument.  Assigned (20050428)  None (candidate not yet proposed)    View
78095  CVE-2015-0832  Candidate  Mozilla Firefox before 36.0 does not properly recognize the equivalence of domain names with and without a trailing . (dot) character, which allows man-in-the-middle attackers to bypass the HPKP and HSTS protection mechanisms by constructing a URL with this character and leveraging access to an X.509 certificate for a domain with this character.  Assigned (20150107)  None (candidate not yet proposed)    View
12815  CVE-2005-1609  Candidate  Unknown vulnerability in Sun StorEdge 6130 Arrays (SE6130) with serial numbers between 0451AWF00G and 0513AWF00J allows local users and remote attackers to delete data.  Assigned (20050516)  None (candidate not yet proposed)    View
78351  CVE-2015-1074  Candidate  WebKit, as used in Apple Safari before 6.2.4, 7.x before 7.1.4, and 8.x before 8.0.4, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other CVEs listed in APPLE-SA-2015-03-17-1.  Assigned (20150116)  None (candidate not yet proposed)    View
13071  CVE-2005-1865  Candidate  Multiple SQL injection vulnerabilities in Calendarix Advanced 1.5 allow remote attackers to execute arbitrary SQL commands via the catview parameter to (1) cal_week.php, (2) cal_cat.php, or (3) cal_day.php, or (4) id parameter to cal_pophols.php.  Assigned (20050608)  None (candidate not yet proposed)    View

Page 1208 of 20943, showing 5 records out of 104715 total, starting on record 6036, ending on 6040

Actions