CVE List

Id CVE No. Status Description Phase Votes Comments Actions
83174  CVE-2015-5897  Candidate  The Address Book framework in Apple OS X before 10.11 allows local users to gain privileges by using an environment variable to inject code into processes that rely on this framework.  Assigned (20150806)  None (candidate not yet proposed)    View
17894  CVE-2006-1790  Candidate  A regression fix in Mozilla Firefox 1.0.7 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via the InstallTrigger.install method, which leads to memory corruption.  Assigned (20060414)  None (candidate not yet proposed)    View
83430  CVE-2015-6153  Candidate  Microsoft Internet Explorer 11 and Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Microsoft Browser Memory Corruption Vulnerability," a different vulnerability than CVE-2015-6140, CVE-2015-6142, CVE-2015-6143, CVE-2015-6158, CVE-2015-6159, and CVE-2015-6160.  Assigned (20150814)  None (candidate not yet proposed)    View
18150  CVE-2006-2046  Candidate  Multiple SQL injection vulnerabilities in Application Dynamics Cartweaver ColdFusion 2.16.11 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) category and (2) keywords parameters in (a) Results.cfm, and the (3) ProdID parameter in (b) Details.cfm.  Assigned (20060426)  None (candidate not yet proposed)    View
83686  CVE-2015-6409  Candidate  Cisco Jabber 10.6.x, 11.0.x, and 11.1.x on Windows allows man-in-the-middle attackers to conduct STARTTLS downgrade attacks and trigger cleartext XMPP sessions via unspecified vectors, aka Bug ID CSCuw87419.  Assigned (20150817)  None (candidate not yet proposed)    View

Page 18925 of 20943, showing 5 records out of 104715 total, starting on record 94621, ending on 94625

Actions