CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
12529 | CVE-2005-1323 | Candidate | Buffer overflow in NetFtpd for NetTerm 5.1.1 and earlier allows remote attackers to execute arbitrary code via a long USER command. | Assigned (20050427) | None (candidate not yet proposed) | View | |
78065 | CVE-2015-0802 | Candidate | Mozilla Firefox before 37.0 relies on docshell type information instead of page principal information for Window.webidl access control, which might allow remote attackers to execute arbitrary JavaScript code with chrome privileges via certain content navigation that leverages the reachability of a privileged window with an unintended persistence of access to restricted internal methods. | Assigned (20150107) | None (candidate not yet proposed) | View | |
12785 | CVE-2005-1579 | Candidate | Apple QuickTime Player 7.0 on Mac OS X 10.4 allows remote attackers to obtain sensitive information via a .mov file with a Quartz Composer composition (.qtz) file that uses certain patches to read local information, then other patches to send the information to the attacker. | Assigned (20050514) | None (candidate not yet proposed) | View | |
78321 | CVE-2015-1044 | Candidate | vmware-authd (aka the Authorization process) in VMware Workstation 10.x before 10.0.5, VMware Player 6.x before 6.0.5, and VMware ESXi 5.0 through 5.5 allows attackers to cause a host OS denial of service via unspecified vectors. | Assigned (20150112) | None (candidate not yet proposed) | View | |
13041 | CVE-2005-1835 | Candidate | NEXTWEB (i)Site stores databases under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information via a direct request to databases/Users.mdb. | Assigned (20050602) | None (candidate not yet proposed) | View |
Page 19768 of 20943, showing 5 records out of 104715 total, starting on record 98836, ending on 98840