CVE List

Id CVE No. Status Description Phase Votes Comments Actions
17387  CVE-2006-1283  Candidate  opiepasswd in One-Time Passwords in Everything (OPIE) in FreeBSD 4.10-RELEASE-p22 through 6.1-STABLE before 20060322 uses the getlogin function to determine the invoking user account, which might allow local users to configure OPIE access to the root account and possibly gain root privileges if a root shell is permitted by the configuration of the wheel group or sshd.  Assigned (20060319)  None (candidate not yet proposed)    View
82923  CVE-2015-5646  Candidate  Cybozu Garoon 3.x through 3.7.5 and 4.x through 4.0.3 allows remote authenticated users to execute arbitrary PHP code via unspecified vectors, aka CyVDB-863 and CyVDB-867.  Assigned (20150724)  None (candidate not yet proposed)    View
17643  CVE-2006-1539  Candidate  Multiple buffer overflows in the checkscores function in scores.c in tetris-bsd in bsd-games before 2.17-r1 in Gentoo Linux might allow local users with games group membership to gain privileges by modifying tetris-bsd.scores to contain crafted executable content, which is executed when another user launches tetris-bsd.  Assigned (20060330)  None (candidate not yet proposed)    View
83179  CVE-2015-5902  Candidate  The debugging feature in the kernel in Apple OS X before 10.11 mismanages state, which allows local users to cause a denial of service via unspecified vectors.  Assigned (20150806)  None (candidate not yet proposed)    View
17899  CVE-2006-1795  Candidate  Cross-site scripting (XSS) vulnerability in tablepublisher.cgi in UPDI Network Enterprise @1 Table Publisher 2006-03-23 allows remote attackers to inject arbitrary web script or HTML via the Title of Table field.  Assigned (20060417)  None (candidate not yet proposed)    View

Page 19298 of 20943, showing 5 records out of 104715 total, starting on record 96486, ending on 96490

Actions