CVE List

Id CVE No. Status Description Phase Votes Comments Actions
80907  CVE-2015-3630  Candidate  Docker Engine before 1.6.1 uses weak permissions for (1) /proc/asound, (2) /proc/timer_stats, (3) /proc/latency_stats, and (4) /proc/fs, which allows local users to modify the host, obtain sensitive information, and perform protocol downgrade attacks via a crafted image.  Assigned (20150501)  None (candidate not yet proposed)    View
15627  CVE-2005-4423  Candidate  Unrestricted file upload vulnerability in PHPFM before 0.2.3 allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension to an accessible directory, as demonstrated using a file with a .php extension, aka "upload phpshell."  Assigned (20051220)  None (candidate not yet proposed)    View
81163  CVE-2015-3886  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20150512)  None (candidate not yet proposed)    View
15883  CVE-2005-4679  Candidate  Internet Explorer 6 for Windows XP Service Pack 2 allows remote attackers to spoof the URL in the status bar via the title in an image in a link to a trusted site within a form to the malicious site.  Assigned (20060131)  None (candidate not yet proposed)    View
81419  CVE-2015-4142  Candidate  Integer underflow in the WMM Action frame parser in hostapd 0.5.5 through 2.4 and wpa_supplicant 0.7.0 through 2.4, when used for AP mode MLME/SME functionality, allows remote attackers to cause a denial of service (crash) via a crafted frame, which triggers an out-of-bounds read.  Assigned (20150531)  None (candidate not yet proposed)    View

Page 1511 of 20943, showing 5 records out of 104715 total, starting on record 7551, ending on 7555

Actions