CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
58735 | CVE-2012-5492 | Candidate | uid_catalog.py in Plone before 4.2.3 and 4.3 before beta 1 allows remote attackers to obtain metadata about hidden objects via a crafted URL. | Assigned (20121024) | None (candidate not yet proposed) | View | |
81035 | CVE-2015-3758 | Candidate | UIKit WebView in Apple iOS before 8.4.1 allows attackers to bypass an intended user-confirmation requirement and initiate arbitrary FaceTime calls via an app that provides a crafted URL. | Assigned (20150507) | None (candidate not yet proposed) | View | |
14355 | CVE-2005-3149 | Candidate | Uim 0.4.x before 0.4.9.1 and 0.5.0 and earlier does not properly handle the LIBUIM_VANILLA environment variable when a suid or sgid application is linked to libuim, such as immodule for Qt, which allows local users to gain privileges. | Assigned (20051005) | None (candidate not yet proposed) | View | |
11709 | CVE-2005-0503 | Candidate | uim before 0.4.5.1 trusts certain environment variables when libUIM is used in setuid or setgid applications, which allows local users to gain privileges. | Assigned (20050221) | None (candidate not yet proposed) | View | |
56989 | CVE-2012-3746 | Candidate | UIWebView in UIKit in Apple iOS before 6 does not properly use the Data Protection feature, which allows context-dependent attackers to obtain cleartext file content by leveraging direct access to a device"s filesystem. | Assigned (20120619) | None (candidate not yet proposed) | View |
Page 18606 of 20943, showing 5 records out of 104715 total, starting on record 93026, ending on 93030