CVE List

Id CVE No. Status Description Phase Votes Comments Actions
18711  CVE-2006-2607  Candidate  do_command.c in Vixie cron (vixie-cron) 4.1 does not check the return code of a setuid call, which might allow local users to gain root privileges if setuid fails in cases such as PAM failures or resource limits, as originally demonstrated by a program that exceeds the process limits as defined in /etc/security/limits.conf.  Assigned (20060525)  None (candidate not yet proposed)    View
84247  CVE-2015-6970  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20150916)  None (candidate not yet proposed)    View
18967  CVE-2006-2863  Candidate  PHP remote file inclusion vulnerability in class.cs_phpmailer.php in CS-Cart 1.3.3 allows remote attackers to execute arbitrary PHP code via a URL in the classes_dir parameter.  Assigned (20060606)  None (candidate not yet proposed)    View
84503  CVE-2015-7226  Candidate  The Administration Views module 7.x-1.x before 7.x-1.5 for Drupal checks access permissions based on the router path from the view instead of the display property, which allows remote attackers to obtain sensitive information via vectors related to the access handler.  Assigned (20150917)  None (candidate not yet proposed)    View
19223  CVE-2006-3119  Candidate  The fbgs framebuffer Postscript/PDF viewer in fbi before 2.01 has a typo that prevents a filter from working correctly, which allows user-assisted attackers to bypass the filter and execute malicious Postscript commands.  Assigned (20060621)  None (candidate not yet proposed)    View

Page 1833 of 20943, showing 5 records out of 104715 total, starting on record 9161, ending on 9165

Actions