CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
80907 | CVE-2015-3630 | Candidate | Docker Engine before 1.6.1 uses weak permissions for (1) /proc/asound, (2) /proc/timer_stats, (3) /proc/latency_stats, and (4) /proc/fs, which allows local users to modify the host, obtain sensitive information, and perform protocol downgrade attacks via a crafted image. | Assigned (20150501) | None (candidate not yet proposed) | View | |
15627 | CVE-2005-4423 | Candidate | Unrestricted file upload vulnerability in PHPFM before 0.2.3 allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension to an accessible directory, as demonstrated using a file with a .php extension, aka "upload phpshell." | Assigned (20051220) | None (candidate not yet proposed) | View | |
81163 | CVE-2015-3886 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20150512) | None (candidate not yet proposed) | View | |
15883 | CVE-2005-4679 | Candidate | Internet Explorer 6 for Windows XP Service Pack 2 allows remote attackers to spoof the URL in the status bar via the title in an image in a link to a trusted site within a form to the malicious site. | Assigned (20060131) | None (candidate not yet proposed) | View | |
81419 | CVE-2015-4142 | Candidate | Integer underflow in the WMM Action frame parser in hostapd 0.5.5 through 2.4 and wpa_supplicant 0.7.0 through 2.4, when used for AP mode MLME/SME functionality, allows remote attackers to cause a denial of service (crash) via a crafted frame, which triggers an out-of-bounds read. | Assigned (20150531) | None (candidate not yet proposed) | View |
Page 1511 of 20943, showing 5 records out of 104715 total, starting on record 7551, ending on 7555