CVE List

Id CVE No. Status Description Phase Votes Comments Actions
82930  CVE-2015-5653  Candidate  Buffer overflow in Canary Labs Trend Web Server before 9.5.2 allows remote attackers to execute arbitrary code via a crafted TCP packet.  Assigned (20150724)  None (candidate not yet proposed)    View
17650  CVE-2006-1546  Candidate  Apache Software Foundation (ASF) Struts before 1.2.9 allows remote attackers to bypass validation via a request with a "org.apache.struts.taglib.html.Constants.CANCEL" parameter, which causes the action to be canceled but would not be detected from applications that do not use the isCancelled check.  Assigned (20060330)  None (candidate not yet proposed)    View
83186  CVE-2015-5909  Candidate  IDE Xcode Server in Apple Xcode before 7.0 does not properly restrict access to repository e-mail lists, which allows remote attackers to obtain potentially sensitive build information in opportunistic circumstances by leveraging incorrect notification delivery.  Assigned (20150806)  None (candidate not yet proposed)    View
17906  CVE-2006-1802  Candidate  Cross-site scripting (XSS) vulnerability in index.php in TinyWebGallery 1.3 and 1.4 allows remote attackers to inject arbitrary web script or HTML via the twg_album parameter.  Assigned (20060417)  None (candidate not yet proposed)    View
83442  CVE-2015-6165  Candidate  Microsoft Silverlight 5 before 5.1.41105.00 allows remote attackers to bypass the ASLR protection mechanism via a crafted web site, aka "Microsoft Silverlight Information Disclosure Vulnerability," a different vulnerability than CVE-2015-6114.  Assigned (20150814)  None (candidate not yet proposed)    View

Page 19855 of 20943, showing 5 records out of 104715 total, starting on record 99271, ending on 99275

Actions