CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
84739 | CVE-2015-7462 | Candidate | IBM WebSphere MQ 8.0.0.4 on IBM i platforms allows local users to discover cleartext certificate-keystore passwords within MQ trace output by leveraging administrator privileges to execute the mqcertck program. | Assigned (20150929) | None (candidate not yet proposed) | View | |
19459 | CVE-2006-3355 | Candidate | Heap-based buffer overflow in httpdget.c in mpg123 before 0.59s-rll allows remote attackers to execute arbitrary code via a long URL, which is not properly terminated before being used with the strncpy function. NOTE: This appears to be the result of an incomplete patch for CVE-2004-0982. | Assigned (20060706) | None (candidate not yet proposed) | View | |
84995 | CVE-2015-7718 | Candidate | mediaserver in Android 5.x before 5.1.1 LMY48T and 6.0 before 2015-10-01 allows attackers to cause a denial of service (process crash) via unspecified vectors, aka internal bug 22278703, a different vulnerability than CVE-2015-6605. | Assigned (20151006) | None (candidate not yet proposed) | View | |
19715 | CVE-2006-3611 | Candidate | Directory traversal vulnerability in pm.php in Phorum 5 allows remote authenticated users to include and execute arbitrary local files via directory traversal sequences in the GLOBALS[template] parameter, as demonstrated by injecting PHP sequences into a log file, which is then included by pm.php. | Assigned (20060714) | None (candidate not yet proposed) | View | |
85251 | CVE-2015-7974 | Candidate | NTP 4.x before 4.2.8p6 and 4.3.x before 4.3.90 do not verify peer associations of symmetric keys when authenticating packets, which might allow remote attackers to conduct impersonation attacks via an arbitrary trusted key, aka a "skeleton key." | Assigned (20151023) | None (candidate not yet proposed) | View |
Page 295 of 20943, showing 5 records out of 104715 total, starting on record 1471, ending on 1475