CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
77553 | CVE-2015-0290 | Candidate | The multi-block feature in the ssl3_write_bytes function in s3_pkt.c in OpenSSL 1.0.2 before 1.0.2a on 64-bit x86 platforms with AES NI support does not properly handle certain non-blocking I/O cases, which allows remote attackers to cause a denial of service (pointer corruption and application crash) via unspecified vectors. | Assigned (20141118) | None (candidate not yet proposed) | View | |
12273 | CVE-2005-1067 | Candidate | Vulnerability in Access_user Class before 1.75 allows local users to gain access as other users via the password "new". | Assigned (20050412) | None (candidate not yet proposed) | View | |
77809 | CVE-2015-0546 | Candidate | EMC Unified Infrastructure Manager/Provisioning (UIM/P) 4.1 allows remote attackers to bypass LDAP authentication by providing a valid account name. | Assigned (20141217) | None (candidate not yet proposed) | View | |
12529 | CVE-2005-1323 | Candidate | Buffer overflow in NetFtpd for NetTerm 5.1.1 and earlier allows remote attackers to execute arbitrary code via a long USER command. | Assigned (20050427) | None (candidate not yet proposed) | View | |
78065 | CVE-2015-0802 | Candidate | Mozilla Firefox before 37.0 relies on docshell type information instead of page principal information for Window.webidl access control, which might allow remote attackers to execute arbitrary JavaScript code with chrome privileges via certain content navigation that leverages the reachability of a privileged window with an unintended persistence of access to restricted internal methods. | Assigned (20150107) | None (candidate not yet proposed) | View |
Page 19759 of 20943, showing 5 records out of 104715 total, starting on record 98791, ending on 98795