CVE List

Id CVE No. Status Description Phase Votes Comments Actions
22768  CVE-2006-6664  Candidate  Format string vulnerability in Marathon Aleph One before 0.17.1 and 2006-12-17 might allow remote attackers to cause a denial of service (application crash) or execute arbitrary code via format string specifiers in the TopLevelLogger::logMessageV function in Misc/Logging.cpp. NOTE: some details were obtained from third party information.  Assigned (20061220)  None (candidate not yet proposed)    View
88304  CVE-2016-1485  Candidate  Cross-site scripting (XSS) vulnerability in Cisco Identity Services Engine 1.3(0.876) allows remote attackers to inject arbitrary web script or HTML via crafted parameters, aka Bug ID CSCva46497.  Assigned (20160104)  None (candidate not yet proposed)    View
23024  CVE-2006-6920  Candidate  Cross-site scripting (XSS) vulnerability in Nucleus before 3.24 allows remote attackers to inject arbitrary web script or HTML via unknown vectors, possibly involving (1) lib/ADMIN.php and (2) lib/SKIN.php.  Assigned (20070111)  None (candidate not yet proposed)    View
88560  CVE-2016-1741  Candidate  The NVIDIA driver in the Graphics Drivers subsystem in Apple OS X before 10.11.4 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.  Assigned (20160113)  None (candidate not yet proposed)    View
23280  CVE-2006-7176  Candidate  The version of Sendmail 8.13.1-2 on Red Hat Enterprise Linux 4 Update 4 and earlier does not reject the "localhost.localdomain" domain name for e-mail messages that come from external hosts, which might allow remote attackers to spoof messages.  Assigned (20070327)  None (candidate not yet proposed)    View

Page 19093 of 20943, showing 5 records out of 104715 total, starting on record 95461, ending on 95465

Actions