CVE List

Id CVE No. Status Description Phase Votes Comments Actions
86011  CVE-2015-8734  Candidate  The dissect_nwp function in epan/dissectors/packet-nwp.c in the NWP dissector in Wireshark 2.0.x before 2.0.1 mishandles the packet type, which allows remote attackers to cause a denial of service (application crash) via a crafted packet.  Assigned (20160103)  None (candidate not yet proposed)    View
20731  CVE-2006-4627  Candidate  System Information ActiveX control (msinfo.dll), when accessed via Microsoft Internet Explorer, allows remote attackers to cause a denial of service (crash) via a SaveFile function with a long (1) computer and possibly (2) filename and (3) category argument.  Assigned (20060907)  None (candidate not yet proposed)    View
86267  CVE-2015-8990  Candidate  Detection bypass vulnerability in Intel Security Advanced Threat Defense (ATD) 3.4.6 and earlier allows malware samples to bypass ATD detection via renaming the malware.  Assigned (20170227)  None (candidate not yet proposed)    View
20987  CVE-2006-4883  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in IDevSpot BizDirectory allow remote attackers to inject arbitrary web script or HTML via (1) the stylesheet parameter in Feed.php or (2) the message parameter in status.php.  Assigned (20060919)  None (candidate not yet proposed)    View
86523  CVE-2016-0227  Candidate  Cross-site scripting (XSS) vulnerability in the document-list control implementation in IBM Business Process Manager (BPM) 8.0 through 8.0.1.3, 8.5.0 through 8.5.0.2, and 8.5.5 and 8.5.6 through 8.5.6.2 allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL.  Assigned (20151208)  None (candidate not yet proposed)    View

Page 20202 of 20943, showing 5 records out of 104715 total, starting on record 101006, ending on 101010

Actions