CVE List

Id CVE No. Status Description Phase Votes Comments Actions
82948  CVE-2015-5671  Candidate  Techno Project Japan Enisys Gw before 1.4.1 allows remote attackers to bypass intended access restrictions and read arbitrary uploaded files via unspecified vectors.  Assigned (20150724)  None (candidate not yet proposed)    View
17668  CVE-2006-1564  Candidate  Untrusted search path vulnerability in libapache2-svn 1.3.0-4 for Subversion in Debian GNU/Linux includes RPATH values under the /tmp/svn directory for the (1) mod_authz_svn.so and (2) mod_dav_svn.so modules, which might allow local users to gain privileges by installing malicious libraries in that directory.  Assigned (20060331)  None (candidate not yet proposed)    View
83204  CVE-2015-5927  Candidate  FontParser in Apple iOS before 9.1, OS X before 10.11.1, and watchOS before 2.0.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted font file, a different vulnerability than CVE-2015-5942.  Assigned (20150806)  None (candidate not yet proposed)    View
17924  CVE-2006-1820  Candidate  Cross-site scripting (XSS) vulnerability in index.php in ModX 0.9.1 allows remote attackers to inject arbitrary web script or HTML via the id parameter. NOTE: this might be resultant from the directory traversal vulnerability.  Assigned (20060417)  None (candidate not yet proposed)    View
83460  CVE-2015-6183  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20150814)  None (candidate not yet proposed)    View

Page 350 of 20943, showing 5 records out of 104715 total, starting on record 1746, ending on 1750

Actions