CVE List

Id CVE No. Status Description Phase Votes Comments Actions
77295  CVE-2015-0032  Candidate  vbscript.dll in Microsoft VBScript 5.6 through 5.8, as used with Internet Explorer 8 through 11 and other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "VBScript Memory Corruption Vulnerability."  Assigned (20141118)  None (candidate not yet proposed)    View
12015  CVE-2005-0809  Candidate  NotifyLink, when configured for client key retrieval, allows remote attackers to obtain AES keys via a direct request to /hwp/get.asp, then uses a weak encryption scheme (fixed byte reordering) to protect the key, which allows remote attackers to obtain the key via a brute force attack.  Assigned (20050320)  None (candidate not yet proposed)    View
77551  CVE-2015-0288  Candidate  The X509_to_X509_REQ function in crypto/x509/x509_req.c in OpenSSL before 0.9.8zf, 1.0.0 before 1.0.0r, 1.0.1 before 1.0.1m, and 1.0.2 before 1.0.2a might allow attackers to cause a denial of service (NULL pointer dereference and application crash) via an invalid certificate key.  Assigned (20141118)  None (candidate not yet proposed)    View
12271  CVE-2005-1065  Candidate  tetex in Novell Linux Desktop 9 allows local users to determine the existence of arbitrary files via a symlink attack in the /var/cache/fonts directory.  Assigned (20050412)  None (candidate not yet proposed)    View
77807  CVE-2015-0544  Candidate  EMC Secure Remote Services Virtual Edition (ESRS VE) 3.x before 3.06 does not properly generate random values for session cookies, which makes it easier for remote attackers to hijack sessions by predicting a value.  Assigned (20141217)  None (candidate not yet proposed)    View

Page 18997 of 20943, showing 5 records out of 104715 total, starting on record 94981, ending on 94985

Actions