CVE List

Id CVE No. Status Description Phase Votes Comments Actions
84466  CVE-2015-7189  Candidate  Race condition in the JPEGEncoder function in Mozilla Firefox before 42.0 and Firefox ESR 38.x before 38.4 allows remote attackers to execute arbitrary code or cause a denial of service (heap-based buffer overflow) via vectors involving a CANVAS element and crafted JavaScript code.  Assigned (20150916)  None (candidate not yet proposed)    View
19186  CVE-2006-3082  Candidate  parse-packet.c in GnuPG (gpg) 1.4.3 and 1.9.20, and earlier versions, allows remote attackers to cause a denial of service (gpg crash) and possibly overwrite memory via a message packet with a large length (long user ID string), which could lead to an integer overflow, as demonstrated using the --no-armor option.  Assigned (20060619)  None (candidate not yet proposed)    View
84722  CVE-2015-7445  Candidate  IBM Multi-Enterprise Integration Gateway 1.0 through 1.0.0.1 and B2B Advanced Communications 1.x before 1.0.0.4, when guest access is configured, allow remote authenticated users to obtain sensitive information by reading error messages in responses.  Assigned (20150929)  None (candidate not yet proposed)    View
19442  CVE-2006-3338  Candidate  Cross-site scripting (XSS) vulnerability in Atlassian JIRA 3.6.2-#156 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors in a direct request to secure/ConfigureReleaseNote.jspa, which are not sanitized before being returned in an error page.  Assigned (20060703)  None (candidate not yet proposed)    View
84978  CVE-2015-7701  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20151004)  None (candidate not yet proposed)    View

Page 19853 of 20943, showing 5 records out of 104715 total, starting on record 99261, ending on 99265

Actions