CVE List

Id CVE No. Status Description Phase Votes Comments Actions
19974  CVE-2006-3870  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20060726)  None (candidate not yet proposed)    View
85510  CVE-2015-8233  Candidate  Cross-site scripting (XSS) vulnerability in the MAYO theme 7.x-1.x before 7.x-1.4 and 7.x-2.x before 7.x-2.6 for Drupal allows remote administrators with the "Administer themes" permission to inject arbitrary web script or HTML via unspecified vectors related to theme settings.  Assigned (20151117)  None (candidate not yet proposed)    View
20230  CVE-2006-4126  Candidate  The dc_chat function in cmd.dc.c in DConnect Daemon 0.7.0 and earlier allows remote attackers to cause a denial of service (application crash) by sending a client message before providing the nickname, which triggers a null pointer dereference.  Assigned (20060814)  None (candidate not yet proposed)    View
85766  CVE-2015-8489  Candidate  customapp in Cybozu Office 9.9.0 through 10.3.0 allows remote authenticated users to cause a denial of service (excessive database locking) via a crafted CSV file, a different vulnerability than CVE-2016-1153.  Assigned (20151207)  None (candidate not yet proposed)    View
20486  CVE-2006-4382  Candidate  Multiple buffer overflows in Apple QuickTime before 7.1.3 allow user-assisted remote attackers to execute arbitrary code via a crafted QuickTime movie.  Assigned (20060828)  None (candidate not yet proposed)    View

Page 510 of 20943, showing 5 records out of 104715 total, starting on record 2546, ending on 2550

Actions