CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
17379 | CVE-2006-1275 | Candidate | GGZ Gaming Zone 0.0.12 allows remote attackers to cause a denial of service (client disconnect) via inputs that produce malformed XML, including (1) trailing " (apostrophe) character on the ID attribute in a PLAYER XML tag, (2) joining with a long ID attribute or non-trailing " characters, which causes a <none> name to be assigned, and then disconnecting, or (3) a long CDATA message attribute, which prevents closing tags from being added to the string. | Assigned (20060318) | None (candidate not yet proposed) | View | |
82915 | CVE-2015-5638 | Candidate | Directory traversal vulnerability in H2O before 1.4.5 and 1.5.x before 1.5.0-beta2, when the file.dir directive is enabled, allows remote attackers to read arbitrary files via a crafted URL. | Assigned (20150724) | None (candidate not yet proposed) | View | |
17635 | CVE-2006-1531 | Candidate | Unspecified vulnerability in Firefox and Thunderbird before 1.5.0.2, and SeaMonkey before 1.0.1, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown attack vectors related to DHTML. NOTE: due to the lack of sufficient public details from the vendor as of 20060413, it is unclear how CVE-2006-1529, CVE-2006-1530, CVE-2006-1531, and CVE-2006-1723 are different. | Assigned (20060330) | None (candidate not yet proposed) | View | |
83171 | CVE-2015-5894 | Candidate | The X.509 certificate-trust implementation in Apple OS X before 10.11 does not recognize that the kSecRevocationRequirePositiveResponse flag implies a revocation-checking requirement, which makes it easier for man-in-the-middle attackers to spoof endpoints by leveraging access to a revoked certificate. | Assigned (20150806) | None (candidate not yet proposed) | View | |
17891 | CVE-2006-1787 | Candidate | Adobe Document Server for Reader Extensions 6.0 includes a user"s session (jsession) ID in the HTTP Referer header, which allows remote attackers to gain access to PDF files that are being processed within that session. | Assigned (20060413) | None (candidate not yet proposed) | View |
Page 18661 of 20943, showing 5 records out of 104715 total, starting on record 93301, ending on 93305