CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
23064 | CVE-2006-6960 | Candidate | The Compression Sweep feature in WebRoot Spy Sweeper 4.5.9 and earlier does not handle non-ZIP archives, which allows remote attackers to bypass the malware detection via files with (1) RAR, (2) GZ, (3) TAR, (4) CAB, or (5) ACE compression. | Assigned (20070129) | None (candidate not yet proposed) | View | |
88600 | CVE-2016-1781 | Candidate | WebKit in Apple iOS before 9.3 and Safari before 9.1 mishandles attachment URLs, which makes it easier for remote web servers to track users via unspecified vectors. | Assigned (20160113) | None (candidate not yet proposed) | View | |
23320 | CVE-2006-7216 | Candidate | Apache Derby before 10.2.1.6 does not determine privilege requirements for lock table statements at compilation time, and consequently does not enforce privilege requirements at execution time, which allows remote authenticated users to lock arbitrary tables. | Assigned (20070705) | None (candidate not yet proposed) | View | |
88856 | CVE-2016-2037 | Candidate | The cpio_safer_name_suffix function in util.c in cpio 2.11 allows remote attackers to cause a denial of service (out-of-bounds write) via a crafted cpio file. | Assigned (20160122) | None (candidate not yet proposed) | View | |
23576 | CVE-2007-0219 | Candidate | Microsoft Internet Explorer 5.01, 6, and 7 uses certain COM objects from (1) Msb1fren.dll, (2) Htmlmm.ocx, and (3) Blnmgrps.dll as ActiveX controls, which allows remote attackers to execute arbitrary code via unspecified vectors, a different issue than CVE-2006-4697. | Assigned (20070112) | None (candidate not yet proposed) | View |
Page 1917 of 20943, showing 5 records out of 104715 total, starting on record 9581, ending on 9585