CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
17387 | CVE-2006-1283 | Candidate | opiepasswd in One-Time Passwords in Everything (OPIE) in FreeBSD 4.10-RELEASE-p22 through 6.1-STABLE before 20060322 uses the getlogin function to determine the invoking user account, which might allow local users to configure OPIE access to the root account and possibly gain root privileges if a root shell is permitted by the configuration of the wheel group or sshd. | Assigned (20060319) | None (candidate not yet proposed) | View | |
82923 | CVE-2015-5646 | Candidate | Cybozu Garoon 3.x through 3.7.5 and 4.x through 4.0.3 allows remote authenticated users to execute arbitrary PHP code via unspecified vectors, aka CyVDB-863 and CyVDB-867. | Assigned (20150724) | None (candidate not yet proposed) | View | |
17643 | CVE-2006-1539 | Candidate | Multiple buffer overflows in the checkscores function in scores.c in tetris-bsd in bsd-games before 2.17-r1 in Gentoo Linux might allow local users with games group membership to gain privileges by modifying tetris-bsd.scores to contain crafted executable content, which is executed when another user launches tetris-bsd. | Assigned (20060330) | None (candidate not yet proposed) | View | |
83179 | CVE-2015-5902 | Candidate | The debugging feature in the kernel in Apple OS X before 10.11 mismanages state, which allows local users to cause a denial of service via unspecified vectors. | Assigned (20150806) | None (candidate not yet proposed) | View | |
17899 | CVE-2006-1795 | Candidate | Cross-site scripting (XSS) vulnerability in tablepublisher.cgi in UPDI Network Enterprise @1 Table Publisher 2006-03-23 allows remote attackers to inject arbitrary web script or HTML via the Title of Table field. | Assigned (20060417) | None (candidate not yet proposed) | View |
Page 19298 of 20943, showing 5 records out of 104715 total, starting on record 96486, ending on 96490