CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12784  CVE-2005-1578  Candidate  EnCase Forensic Edition 4.18a does not support Device Configuration Overlays (DCO), which allows attackers to hide information without detection.  Assigned (20050514)  None (candidate not yet proposed)    View
78320  CVE-2015-1043  Candidate  The Host Guest File System (HGFS) in VMware Workstation 10.x before 10.0.5, VMware Player 6.x before 6.0.5, and VMware Fusion 6.x before 6.0.5 and 7.x before 7.0.1 allows guest OS users to cause a guest OS denial of service via unspecified vectors.  Assigned (20150112)  None (candidate not yet proposed)    View
13040  CVE-2005-1834  Candidate  SQL injection vulnerability in login.asp in NEXTWEB (i)Site allows remote attackers to execute arbitrary SQL commands and bypass authentication via the password field.  Assigned (20050602)  None (candidate not yet proposed)    View
78576  CVE-2015-1299  Candidate  Use-after-free vulnerability in the shared-timer implementation in Blink, as used in Google Chrome before 45.0.2454.85, allows remote attackers to cause a denial of service or possibly have unspecified other impact by leveraging erroneous timer firing, related to ThreadTimers.cpp and Timer.cpp.  Assigned (20150121)  None (candidate not yet proposed)    View
13296  CVE-2005-2090  Candidate  Jakarta Tomcat 5.0.19 (Coyote/1.1) and Tomcat 4.1.24 (Coyote/1.0) allows remote attackers to poison the web cache, bypass web application firewall protection, and conduct XSS attacks via an HTTP request with both a "Transfer-Encoding: chunked" header and a Content-Length header, which causes Tomcat to incorrectly handle and forward the body of the request in a way that causes the receiving server to process it as a separate HTTP request, aka "HTTP Request Smuggling."  Assigned (20050630)  None (candidate not yet proposed)    View

Page 19689 of 20943, showing 5 records out of 104715 total, starting on record 98441, ending on 98445

Actions