CVE List

Id CVE No. Status Description Phase Votes Comments Actions
78564  CVE-2015-1287  Candidate  Blink, as used in Google Chrome before 44.0.2403.89, enables a quirks-mode exception that limits the cases in which a Cascading Style Sheets (CSS) document is required to have the text/css content type, which allows remote attackers to bypass the Same Origin Policy via a crafted web site, related to core/fetch/CSSStyleSheetResource.cpp.  Assigned (20150121)  None (candidate not yet proposed)    View
13284  CVE-2005-2078  Candidate  BisonFTP Server V4R1 allows remote authenticated users to cause a denial of service via an invalid command with a long argument.  Assigned (20050629)  None (candidate not yet proposed)    View
78820  CVE-2015-1543  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20150206)  None (candidate not yet proposed)    View
13540  CVE-2005-2334  Candidate  Y.SAK allows remote attackers to execute arbitrary commands via shell metacharacters in the $no variable to (1) w_s3mbfm.cgi, (2) w_s3adix.cgi, or (3) w_s3sbfm.cgi.  Assigned (20050720)  None (candidate not yet proposed)    View
79076  CVE-2015-1799  Candidate  The symmetric-key feature in the receive function in ntp_proto.c in ntpd in NTP 3.x and 4.x before 4.2.8p2 performs state-variable updates upon receiving certain invalid packets, which makes it easier for man-in-the-middle attackers to cause a denial of service (synchronization loss) by spoofing the source IP address of a peer.  Assigned (20150217)  None (candidate not yet proposed)    View

Page 18734 of 20943, showing 5 records out of 104715 total, starting on record 93666, ending on 93670

Actions