CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11607  CVE-2005-0401  Candidate  FireFox 1.0.1 and Mozilla before 1.7.6 do not sufficiently address all attack vectors for loading chrome files and hijacking drag and drop events, which allows remote attackers to execute arbitrary XUL code by tricking a user into dragging a scrollbar, a variant of CVE-2005-0527, aka "Firescrolling 2."  Assigned (20050214)  None (candidate not yet proposed)    View
11608  CVE-2005-0402  Candidate  Firefox before 1.0.2 allows remote attackers to execute arbitrary code by tricking a user into saving a page as a Firefox sidebar panel, then using the sidebar panel to inject Javascript into a privileged page.  Assigned (20050214)  None (candidate not yet proposed)    View
11609  CVE-2005-0403  Candidate  init_dev in tty_io.c in the Red Hat backport of NPTL to Red Hat Enterprise Linux 3 does not properly clear controlling tty"s in multi-threaded applications, which allows local users to cause a denial of service (crash) and possibly gain tty access via unknown attack vectors that trigger an access of a pointer to a freed structure.  Assigned (20050214)  None (candidate not yet proposed)    View
11610  CVE-2005-0404  Candidate  KMail 1.7.1 in KDE 3.3.2 allows remote attackers to spoof email information, such as whether the email has been digitally signed or encrypted, via HTML formatted email.  Assigned (20050214)  None (candidate not yet proposed)    View
11611  CVE-2005-0405  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20050214)  None (candidate not yet proposed)    View

Page 19783 of 20943, showing 5 records out of 104715 total, starting on record 98911, ending on 98915

Actions