CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
86011 | CVE-2015-8734 | Candidate | The dissect_nwp function in epan/dissectors/packet-nwp.c in the NWP dissector in Wireshark 2.0.x before 2.0.1 mishandles the packet type, which allows remote attackers to cause a denial of service (application crash) via a crafted packet. | Assigned (20160103) | None (candidate not yet proposed) | View | |
20731 | CVE-2006-4627 | Candidate | System Information ActiveX control (msinfo.dll), when accessed via Microsoft Internet Explorer, allows remote attackers to cause a denial of service (crash) via a SaveFile function with a long (1) computer and possibly (2) filename and (3) category argument. | Assigned (20060907) | None (candidate not yet proposed) | View | |
86267 | CVE-2015-8990 | Candidate | Detection bypass vulnerability in Intel Security Advanced Threat Defense (ATD) 3.4.6 and earlier allows malware samples to bypass ATD detection via renaming the malware. | Assigned (20170227) | None (candidate not yet proposed) | View | |
20987 | CVE-2006-4883 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in IDevSpot BizDirectory allow remote attackers to inject arbitrary web script or HTML via (1) the stylesheet parameter in Feed.php or (2) the message parameter in status.php. | Assigned (20060919) | None (candidate not yet proposed) | View | |
86523 | CVE-2016-0227 | Candidate | Cross-site scripting (XSS) vulnerability in the document-list control implementation in IBM Business Process Manager (BPM) 8.0 through 8.0.1.3, 8.5.0 through 8.5.0.2, and 8.5.5 and 8.5.6 through 8.5.6.2 allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL. | Assigned (20151208) | None (candidate not yet proposed) | View |
Page 20202 of 20943, showing 5 records out of 104715 total, starting on record 101006, ending on 101010