CVE List

Id CVE No. Status Description Phase Votes Comments Actions
17388  CVE-2006-1284  Candidate  The installation of SQLAnywhere in Symantec Ghost 8.0 and 8.2, as used in Symantec Ghost Solutions Suite (SGSS) 1.0, includes a default administrator login account and password, which allows local users to gain privileges or modify tasks.  Assigned (20060319)  None (candidate not yet proposed)    View
82924  CVE-2015-5647  Candidate  The RSS Reader component in Cybozu Garoon 3.x through 3.7.5 and 4.x through 4.0.3 allows remote authenticated users to execute arbitrary PHP code via unspecified vectors, aka CyVDB-866.  Assigned (20150724)  None (candidate not yet proposed)    View
17644  CVE-2006-1540  Candidate  MSO.DLL in Microsoft Office 2000, Office XP (2002), and Office 2003 allows user-assisted attackers to cause a denial of service and execute arbitrary code via multiple attack vectors, as originally demonstrated using a crafted document record with a malformed string, as demonstrated by replacing a certain "01 00 00 00" byte sequence with an "FF FF FF FF" byte sequence, possibly causing an invalid array index, in (1) an Excel .xls document, which triggers an access violation in ole32.dll; (2) an Excel .xlw document, which triggers an access violation in excel.exe; (3) a Word document, which triggers an access violation in mso.dll in winword.exe; and (4) a PowerPoint document, which triggers an access violation in powerpnt.txt. NOTE: after the initial disclosure, this issue was demonstrated by triggering an integer overflow using an inconsistent size for a Unicode "Sheet Name" string.  Assigned (20060330)  None (candidate not yet proposed)    View
83180  CVE-2015-5903  Candidate  The kernel in Apple iOS before 9 allows local users to gain privileges or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-5868 and CVE-2015-5896.  Assigned (20150806)  None (candidate not yet proposed)    View
17900  CVE-2006-1796  Candidate  Cross-site scripting (XSS) vulnerability in the paging links functionality in template-functions-links.php in Wordpress 1.5.2, and possibly other versions before 2.0.1, allows remote attackers to inject arbitrary web script or HTML to Internet Explorer users via the request URI ($_SERVER["REQUEST_URI"]).  Assigned (20060417)  None (candidate not yet proposed)    View

Page 19388 of 20943, showing 5 records out of 104715 total, starting on record 96936, ending on 96940

Actions