CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11535  CVE-2005-0329  Candidate  Directory traversal vulnerability in ZipGenius 5.5 and earlier allows remote attackers to create and possibly modify arbitrary files via a ZIP file with a file whose name includes .. (dot dot) sequences.  Assigned (20050210)  None (candidate not yet proposed)    View
77071  CVE-2014-9770  Candidate  tmpfiles.d/systemd.conf in systemd before 214 uses weak permissions for journal files under (1) /run/log/journal/%m and (2) /var/log/journal/%m, which allows local users to obtain sensitive information by reading these files.  Assigned (20160408)  None (candidate not yet proposed)    View
11791  CVE-2005-0585  Candidate  Firefox before 1.0.1 and Mozilla before 1.7.6 truncates long sub-domains or paths for display, which may allow remote malicious web sites to spoof legitimate sites and facilitate phishing attacks.  Assigned (20050228)  None (candidate not yet proposed)    View
77327  CVE-2015-0064  Candidate  Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word Automation Services in SharePoint Server 2010, Web Applications 2010 SP2, Word Viewer, and Office Compatibility Pack SP3 allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted Office document, aka "Office Remote Code Execution Vulnerability."  Assigned (20141118)  None (candidate not yet proposed)    View
12047  CVE-2005-0841  Candidate  SQL injection vulnerability in (1) people.php, (2) track.php, (3) edit.php, (4) document.php, (5) census.php, (6) passthru.php and possibly other php files in phpMyFamily 1.4.0 allows remote attackers to execute arbitrary SQL commands, as demonstrated via (1) the person parameter to people.php or (2) the Login field.  Assigned (20050324)  None (candidate not yet proposed)    View

Page 1226 of 20943, showing 5 records out of 104715 total, starting on record 6126, ending on 6130

Actions