CVE List

Id CVE No. Status Description Phase Votes Comments Actions
84739  CVE-2015-7462  Candidate  IBM WebSphere MQ 8.0.0.4 on IBM i platforms allows local users to discover cleartext certificate-keystore passwords within MQ trace output by leveraging administrator privileges to execute the mqcertck program.  Assigned (20150929)  None (candidate not yet proposed)    View
19459  CVE-2006-3355  Candidate  Heap-based buffer overflow in httpdget.c in mpg123 before 0.59s-rll allows remote attackers to execute arbitrary code via a long URL, which is not properly terminated before being used with the strncpy function. NOTE: This appears to be the result of an incomplete patch for CVE-2004-0982.  Assigned (20060706)  None (candidate not yet proposed)    View
84995  CVE-2015-7718  Candidate  mediaserver in Android 5.x before 5.1.1 LMY48T and 6.0 before 2015-10-01 allows attackers to cause a denial of service (process crash) via unspecified vectors, aka internal bug 22278703, a different vulnerability than CVE-2015-6605.  Assigned (20151006)  None (candidate not yet proposed)    View
19715  CVE-2006-3611  Candidate  Directory traversal vulnerability in pm.php in Phorum 5 allows remote authenticated users to include and execute arbitrary local files via directory traversal sequences in the GLOBALS[template] parameter, as demonstrated by injecting PHP sequences into a log file, which is then included by pm.php.  Assigned (20060714)  None (candidate not yet proposed)    View
85251  CVE-2015-7974  Candidate  NTP 4.x before 4.2.8p6 and 4.3.x before 4.3.90 do not verify peer associations of symmetric keys when authenticating packets, which might allow remote attackers to conduct impersonation attacks via an arbitrary trusted key, aka a "skeleton key."  Assigned (20151023)  None (candidate not yet proposed)    View

Page 295 of 20943, showing 5 records out of 104715 total, starting on record 1471, ending on 1475

Actions