CVE List

Id CVE No. Status Description Phase Votes Comments Actions
77553  CVE-2015-0290  Candidate  The multi-block feature in the ssl3_write_bytes function in s3_pkt.c in OpenSSL 1.0.2 before 1.0.2a on 64-bit x86 platforms with AES NI support does not properly handle certain non-blocking I/O cases, which allows remote attackers to cause a denial of service (pointer corruption and application crash) via unspecified vectors.  Assigned (20141118)  None (candidate not yet proposed)    View
12273  CVE-2005-1067  Candidate  Vulnerability in Access_user Class before 1.75 allows local users to gain access as other users via the password "new".  Assigned (20050412)  None (candidate not yet proposed)    View
77809  CVE-2015-0546  Candidate  EMC Unified Infrastructure Manager/Provisioning (UIM/P) 4.1 allows remote attackers to bypass LDAP authentication by providing a valid account name.  Assigned (20141217)  None (candidate not yet proposed)    View
12529  CVE-2005-1323  Candidate  Buffer overflow in NetFtpd for NetTerm 5.1.1 and earlier allows remote attackers to execute arbitrary code via a long USER command.  Assigned (20050427)  None (candidate not yet proposed)    View
78065  CVE-2015-0802  Candidate  Mozilla Firefox before 37.0 relies on docshell type information instead of page principal information for Window.webidl access control, which might allow remote attackers to execute arbitrary JavaScript code with chrome privileges via certain content navigation that leverages the reachability of a privileged window with an unintended persistence of access to restricted internal methods.  Assigned (20150107)  None (candidate not yet proposed)    View

Page 19759 of 20943, showing 5 records out of 104715 total, starting on record 98791, ending on 98795

Actions