CVE List

Id CVE No. Status Description Phase Votes Comments Actions
88052  CVE-2016-1233  Candidate  An unspecified udev rule in the Debian fuse package in jessie before 2.9.3-15+deb8u2, in stretch before 2.9.5-1, and in sid before 2.9.5-1 sets world-writable permissions for the /dev/cuse character device, which allows local users to gain privileges via a character device in /dev, related to an ioctl.  Assigned (20151227)  None (candidate not yet proposed)    View
22772  CVE-2006-6668  Candidate  Cross-site scripting (XSS) vulnerability in VerliAdmin 0.3 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.  Assigned (20061220)  None (candidate not yet proposed)    View
88308  CVE-2016-1489  Candidate  Lenovo SHAREit before 3.2.0 for Windows and SHAREit before 3.5.48_ww for Android transfer files in cleartext, which allows remote attackers to (1) obtain sensitive information by sniffing the network or (2) conduct man-in-the-middle (MITM) attacks via unspecified vectors.  Assigned (20160104)  None (candidate not yet proposed)    View
23028  CVE-2006-6924  Candidate  bitweaver 1.3.1 and earlier allows remote attackers to obtain sensitive information via a sort_mode=-98 query string to (1) blogs/list_blogs.php, (2) fisheye/index.php, (3) wiki/orphan_pages.php, or (4) wiki/list_pages.php, which forces a SQL error. NOTE: the fisheye/list_galleries.php vector is already covered by CVE-2005-4380.  Assigned (20070112)  None (candidate not yet proposed)    View
88564  CVE-2016-1745  Candidate  IOFireWireFamily in Apple OS X before 10.11.4 allows local users to cause a denial of service (NULL pointer dereference) via unspecified vectors.  Assigned (20160113)  None (candidate not yet proposed)    View

Page 20022 of 20943, showing 5 records out of 104715 total, starting on record 100106, ending on 100110

Actions