CVE List

Id CVE No. Status Description Phase Votes Comments Actions
84963  CVE-2015-7686  Candidate  Algorithmic complexity vulnerability in Address.pm in the Email-Address module 1.908 and earlier for Perl allows remote attackers to cause a denial of service (CPU consumption) via a crafted string containing a list of e-mail addresses in conjunction with parenthesis characters that can be associated with nested comments. NOTE: the default configuration in 1.908 mitigates this vulnerability but misparses certain realistic comments.  Assigned (20151002)  None (candidate not yet proposed)    View
19683  CVE-2006-3579  Candidate  Cross-site scripting (XSS) vulnerability in Fujitsu ServerView 2.50 up to 3.60L98 and 4.10L11 up to 4.11L81 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20060712)  None (candidate not yet proposed)    View
85219  CVE-2015-7942  Candidate  The xmlParseConditionalSections function in parser.c in libxml2 does not properly skip intermediary entities when it stops parsing invalid input, which allows context-dependent attackers to cause a denial of service (out-of-bounds read and crash) via crafted XML data, a different vulnerability than CVE-2015-7941.  Assigned (20151022)  None (candidate not yet proposed)    View
19939  CVE-2006-3835  Candidate  Apache Tomcat 5 before 5.5.17 allows remote attackers to list directories via a semicolon (;) preceding a filename with a mapped extension, as demonstrated by URLs ending with /;index.jsp and /;help.do.  Assigned (20060724)  None (candidate not yet proposed)    View
85475  CVE-2015-8198  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20151113)  None (candidate not yet proposed)    View

Page 18647 of 20943, showing 5 records out of 104715 total, starting on record 93231, ending on 93235

Actions