CVE List

Id CVE No. Status Description Phase Votes Comments Actions
51736  CVE-2011-3824  Candidate  Your Own URL Shortener (YOURLS) 1.5 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by includes/auth.php and certain other files.  Assigned (20110923)  None (candidate not yet proposed)    View
91671  CVE-2016-4852  Candidate  YoruFukurou (NightOwl) before 2.85 relies on support for emoji skin-tone modifiers even though this support is missing from the CoreText CTFramesetter API on OS X 10.9, which allows remote attackers to cause a denial of service (application crash) via a crafted emoji character sequence.  Assigned (20160517)  None (candidate not yet proposed)    View
41535  CVE-2009-4100  Candidate  Yoono extension before 6.1.1 for Firefox performs certain operations with chrome privileges, which allows user-assisted remote attackers to execute arbitrary commands and perform cross-domain scripting attacks via DOM event handlers such as onload.  Assigned (20091128)  None (candidate not yet proposed)    View
91679  CVE-2016-4860  Candidate  Yokogawa STARDOM FCN/FCJ controller R1.01 through R4.01 does not require authentication for Logic Designer connections, which allows remote attackers to reconfigure the device or cause a denial of service via a (1) stop application program, (2) change value, or (3) modify application command.  Assigned (20160517)  None (candidate not yet proposed)    View
14474  CVE-2005-3268  Candidate  yiff server (yiff-server) 2.14.2 on Debian GNU/Linux runs as root and does not properly verify ownership of files that it opens, which allows local users to read arbitrary files.  Assigned (20051020)  None (candidate not yet proposed)    View

Page 41 of 20943, showing 5 records out of 104715 total, starting on record 201, ending on 205

Actions