CVE List

Id CVE No. Status Description Phase Votes Comments Actions
80113  CVE-2015-2836  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20150402)  None (candidate not yet proposed)    View
14833  CVE-2005-3629  Candidate  initscripts in Red Hat Enterprise Linux 4 does not properly handle certain environment variables when /sbin/service is executed, which allows local users with sudo permissions for /sbin/service to gain root privileges via unknown vectors.  Assigned (20051116)  None (candidate not yet proposed)    View
80369  CVE-2015-3092  Candidate  Adobe Flash Player before 13.0.0.289 and 14.x through 17.x before 17.0.0.188 on Windows and OS X and before 11.2.202.460 on Linux, Adobe AIR before 17.0.0.172, Adobe AIR SDK before 17.0.0.172, and Adobe AIR SDK & Compiler before 17.0.0.172 do not properly restrict discovery of memory addresses, which allows attackers to bypass the ASLR protection mechanism via unspecified vectors, a different vulnerability than CVE-2015-3091.  Assigned (20150409)  None (candidate not yet proposed)    View
15089  CVE-2005-3885  Candidate  The ps2epsi extension shell script (ps2epsi.sh) in Inkscape before 0.41 allows local users to overwrite arbitrary files via a symlink attack on the tmpepsifile.epsi temporary file.  Assigned (20051129)  None (candidate not yet proposed)    View
80625  CVE-2015-3348  Candidate  Cross-site scripting (XSS) vulnerability in the Cloudwords for Multilingual Drupal module before 7.x-2.3 for Drupal allows remote authenticated users to inject arbitrary web script or HTML via a node title.  Assigned (20150421)  None (candidate not yet proposed)    View

Page 19763 of 20943, showing 5 records out of 104715 total, starting on record 98811, ending on 98815

Actions