CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
78096 | CVE-2015-0833 | Candidate | Multiple untrusted search path vulnerabilities in updater.exe in Mozilla Firefox before 36.0, Firefox ESR 31.x before 31.5, and Thunderbird before 31.5 on Windows, when the Maintenance Service is not used, allow local users to gain privileges via a Trojan horse DLL in (1) the current working directory or (2) a temporary directory, as demonstrated by bcrypt.dll. | Assigned (20150107) | None (candidate not yet proposed) | View | |
12816 | CVE-2005-1610 | Candidate | Cross-site scripting (XSS) vulnerability in security.php for Tru-Zone NukeET 3.0 and 3.1 allows remote attackers to inject arbitrary web script or HTML via a base64 encoded Codigo parameter. | Assigned (20050516) | None (candidate not yet proposed) | View | |
78352 | CVE-2015-1075 | Candidate | WebKit, as used in Apple Safari before 6.2.4, 7.x before 7.1.4, and 8.x before 8.0.4, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other CVEs listed in APPLE-SA-2015-03-17-1. | Assigned (20150116) | None (candidate not yet proposed) | View | |
13072 | CVE-2005-1866 | Candidate | Cross-site scripting (XSS) vulnerability in calendar.php in Calendarix Advanced 1.5 allows remote attackers to inject arbitrary web script or HTML via the year parameter. | Assigned (20050608) | None (candidate not yet proposed) | View | |
78608 | CVE-2015-1331 | Candidate | lxclock.c in LXC 1.1.2 and earlier allows local users to create arbitrary files via a symlink attack on /run/lock/lxc/*. | Assigned (20150122) | None (candidate not yet proposed) | View |
Page 1285 of 20943, showing 5 records out of 104715 total, starting on record 6421, ending on 6425