CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
78342 | CVE-2015-1065 | Candidate | Multiple buffer overflows in iCloud Keychain in Apple iOS before 8.2 and Apple OS X through 10.10.2 allow man-in-the-middle attackers to execute arbitrary code by modifying the client-server data stream during keychain recovery. | Assigned (20150116) | None (candidate not yet proposed) | View | |
13062 | CVE-2005-1856 | Candidate | The CD-burning feature in backup-manager 0.5.8 and earlier uses a fixed filename in a world-writable directory for logging, which allows local users to overwrite files via a symlink attack. | Assigned (20050606) | None (candidate not yet proposed) | View | |
78598 | CVE-2015-1321 | Candidate | Use-after-free vulnerability in the file picker implementation in Oxide before 1.6.5 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted webpage. | Assigned (20150122) | None (candidate not yet proposed) | View | |
13318 | CVE-2005-2112 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in XOOPS 2.0.11 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) order parameter to edit.php or (2) cid parameter to comment_edit.php. | Assigned (20050701) | None (candidate not yet proposed) | View | |
78854 | CVE-2015-1577 | Candidate | Directory traversal vulnerability in u5admin/deletefile.php in u5CMS before 3.9.4 allows remote attackers to write to arbitrary files via a (1) .. (dot dot) or (2) full pathname in the f parameter. | Assigned (20150211) | None (candidate not yet proposed) | View |
Page 499 of 20943, showing 5 records out of 104715 total, starting on record 2491, ending on 2495