CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12298  CVE-2005-1092  Candidate  Lightspeed DeluxeFTP 6.01 stores usernames and passwords in plaintext in sites.xml, which is world-readable, which allows local users to gain privileges.  Assigned (20050413)  None (candidate not yet proposed)    View
77834  CVE-2015-0571  Candidate  The WLAN (aka Wi-Fi) driver for the Linux kernel 3.x and 4.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, does not verify authorization for private SET IOCTL calls, which allows attackers to gain privileges via a crafted application, related to wlan_hdd_hostapd.c and wlan_hdd_wext.c.  Assigned (20150107)  None (candidate not yet proposed)    View
12554  CVE-2005-1348  Candidate  Buffer overflow in HTTPMail in MailEnable Enterprise 1.04 and earlier and Professional 1.54 and earlier allows remote attackers to execute arbitrary code via a long HTTP Authorization header.  Assigned (20050428)  None (candidate not yet proposed)    View
78090  CVE-2015-0827  Candidate  Heap-based buffer overflow in the mozilla::gfx::CopyRect function in Mozilla Firefox before 36.0, Firefox ESR 31.x before 31.5, and Thunderbird before 31.5 allows remote attackers to obtain sensitive information from uninitialized process memory via a malformed SVG graphic.  Assigned (20150107)  None (candidate not yet proposed)    View
12810  CVE-2005-1604  Candidate  PHP Advanced Transfer Manager (phpATM) 1.21 allows remote attackers to upload arbitrary files via filenames containing multiple file extensions, as demonstrated using a filename ending in "php.ns", which allows execution of arbitrary PHP code.  Assigned (20050516)  None (candidate not yet proposed)    View

Page 1427 of 20943, showing 5 records out of 104715 total, starting on record 7131, ending on 7135

Actions