CVE List

Id CVE No. Status Description Phase Votes Comments Actions
17414  CVE-2006-1310  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20060320)  None (candidate not yet proposed)    View
82950  CVE-2015-5673  Candidate  eventapp/lib/gcloud.rb in the ISUCON5 qualifier portal (aka eventapp) web application before 2015-10-30 makes improper popen calls, which allows remote attackers to execute arbitrary commands via an HTTP request that includes shell metacharacters in an argument to a "gcloud compute" command.  Assigned (20150724)  None (candidate not yet proposed)    View
17670  CVE-2006-1566  Candidate  Untrusted search path vulnerability in libtunepimp-perl 0.4.2-1 in Debian GNU/Linux includes an RPATH value under the /tmp/buildd directory for the tunepimp.so module, which might allow local users to gain privileges by installing malicious libraries in that directory.  Assigned (20060331)  None (candidate not yet proposed)    View
83206  CVE-2015-5929  Candidate  WebKit, as used in Apple iOS before 9.1, Safari before 9.0.1, and iTunes before 12.3.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2015-10-21-1, APPLE-SA-2015-10-21-3, and APPLE-SA-2015-10-21-5.  Assigned (20150806)  None (candidate not yet proposed)    View
17926  CVE-2006-1822  Candidate  Cross-site scripting (XSS) vulnerability in search.php in FarsiNews 2.5.3 Pro and earlier allows remote attackers to inject arbitrary web script or HTML via the selected_search_arch parameter.  Assigned (20060417)  None (candidate not yet proposed)    View

Page 506 of 20943, showing 5 records out of 104715 total, starting on record 2526, ending on 2530

Actions