CVE List

Id CVE No. Status Description Phase Votes Comments Actions
85253  CVE-2015-7976  Candidate  The ntpq saveconfig command in NTP 4.1.2, 4.2.x before 4.2.8p6, 4.3, 4.3.25, 4.3.70, and 4.3.77 does not properly filter special characters, which allows attackers to cause unspecified impact via a crafted filename.  Assigned (20151023)  None (candidate not yet proposed)    View
19973  CVE-2006-3869  Candidate  Heap-based buffer overflow in URLMON.DLL in Microsoft Internet Explorer 6 SP1 on Windows 2000 and XP SP1, with versions the MS06-042 patch before 20060824, allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a long URL on a website that uses HTTP 1.1 compression.  Assigned (20060726)  None (candidate not yet proposed)    View
85509  CVE-2015-8232  Candidate  The UC Profile module 6.x-1.x before 6.x-1.3 for Drupal does not properly check access to profiles in certain circumstances, which might allow remote attackers to obtain sensitive information from the anonymous user profile via unspecified vectors.  Assigned (20151117)  None (candidate not yet proposed)    View
20229  CVE-2006-4125  Candidate  Stack-based buffer overflow in main.c in DConnect Daemon 0.7.0 and earlier allows remote attackers to execute arbitrary code via a large nickname, which is not properly handled by the listen_thread_udp function.  Assigned (20060814)  None (candidate not yet proposed)    View
85765  CVE-2015-8488  Candidate  Cybozu Office 10.3.0 allows remote attackers to read image files via a crafted e-mail message, a different vulnerability than CVE-2015-8487.  Assigned (20151207)  None (candidate not yet proposed)    View

Page 429 of 20943, showing 5 records out of 104715 total, starting on record 2141, ending on 2145

Actions