CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
20228 | CVE-2006-4124 | Candidate | The libXm library in LessTif 0.95.0 and earlier allows local users to gain privileges via the DEBUG_FILE environment variable, which is used to create world-writable files when libXm is run from a setuid program. | Assigned (20060814) | None (candidate not yet proposed) | View | |
85764 | CVE-2015-8487 | Candidate | Cybozu Office 9.0.0 through 10.3 allows remote attackers to discover CSRF tokens via unspecified vectors, a different vulnerability than CVE-2015-8488. | Assigned (20151207) | None (candidate not yet proposed) | View | |
20484 | CVE-2006-4380 | Candidate | MySQL before 4.1.13 allows local users to cause a denial of service (persistent replication slave crash) via a query with multiupdate and subselects. | Assigned (20060828) | None (candidate not yet proposed) | View | |
86020 | CVE-2015-8743 | Candidate | QEMU (aka Quick Emulator) built with the NE2000 device emulation support is vulnerable to an OOB r/w access issue. It could occur while performing "ioport" r/w operations. A privileged (CAP_SYS_RAWIO) user/process could use this flaw to leak or corrupt QEMU memory bytes. | Assigned (20160104) | None (candidate not yet proposed) | View | |
20740 | CVE-2006-4636 | Candidate | Directory traversal vulnerability in SZEWO PhpCommander 3.0 and earlier allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the Directory parameter, as demonstrated by parameter values naming Apache HTTP Server log files that apparently contain PHP code. | Assigned (20060908) | None (candidate not yet proposed) | View |
Page 1497 of 20943, showing 5 records out of 104715 total, starting on record 7481, ending on 7485