CVE List

Id CVE No. Status Description Phase Votes Comments Actions
78608  CVE-2015-1331  Candidate  lxclock.c in LXC 1.1.2 and earlier allows local users to create arbitrary files via a symlink attack on /run/lock/lxc/*.  Assigned (20150122)  None (candidate not yet proposed)    View
13328  CVE-2005-2122  Candidate  Windows Shell for Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 allows remote attackers to execute arbitrary commands via a shortcut (.lnk) file with long font properties that lead to a buffer overflow in the Client/Server Runtime Server Subsystem (CSRSS), a different vulnerability than CVE-2005-2118.  Assigned (20050702)  None (candidate not yet proposed)    View
78864  CVE-2015-1587  Candidate  Unrestricted file upload vulnerability in file_to_index.php in Maarch LetterBox 2.8 and earlier and GEC/GED 1.4 and earlier allows remote attackers to execute arbitrary PHP code by uploading a file with a PHP extension, then accessing it via a request to a predictable filename in tmp/.  Assigned (20150211)  None (candidate not yet proposed)    View
13584  CVE-2005-2378  Candidate  Directory traversal vulnerability in Oracle Reports allows remote attackers to read arbitrary files via an absolute or relative path to the (1) CUSTOMIZE or (2) desformat parameters to rwservlet. NOTE: vector 2 is probably the same as CVE-2006-0289, and fixed in Jan 2006 CPU.  Assigned (20050726)  None (candidate not yet proposed)    View
79120  CVE-2015-1843  Candidate  The Red Hat docker package before 1.5.0-28, when using the --add-registry option, falls back to HTTP when the HTTPS connection to the registry fails, which allows man-in-the-middle attackers to conduct downgrade attacks and obtain authentication and image data by leveraging a network position between the client and the registry to block HTTPS traffic. NOTE: this vulnerability exists because of a CVE-2014-5277 regression.  Assigned (20150217)  None (candidate not yet proposed)    View

Page 1292 of 20943, showing 5 records out of 104715 total, starting on record 6456, ending on 6460

Actions