CVE List

Id CVE No. Status Description Phase Votes Comments Actions
90119  CVE-2016-3300  Candidate  The Netlogon service in Microsoft Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT 8.1 improperly establishes secure communications channels, which allows local users to gain privileges by leveraging access to a domain-joined machine, aka "Netlogon Elevation of Privilege Vulnerability."  Assigned (20160315)  None (candidate not yet proposed)    View
24839  CVE-2007-1482  Candidate  Cross-site scripting (XSS) vulnerability in index.php in WBBlog allows remote attackers to inject arbitrary web script or HTML via the e_id parameter in a viewentry cmd.  Assigned (20070316)  None (candidate not yet proposed)    View
90375  CVE-2016-3556  Candidate  Unspecified vulnerability in the Oracle Agile PLM component in Oracle Supply Chain Products Suite 9.3.4 and 9.3.5 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to EM Integration.  Assigned (20160317)  None (candidate not yet proposed)    View
25095  CVE-2007-1738  Candidate  TrueCrypt 4.3, when installed setuid root, allows local users to cause a denial of service (filesystem unavailability) or gain privileges by mounting a crafted TrueCrypt volume, as demonstrated using (1) /usr/bin or (2) another user"s home directory, a different issue than CVE-2007-1589.  Assigned (20070328)  None (candidate not yet proposed)    View
90631  CVE-2016-3812  Candidate  The MediaTek video codec driver in Android before 2016-07-05 on Android One devices allows attackers to obtain sensitive information via a crafted application, aka Android internal bug 28174833 and MediaTek internal bug ALPS02688832.  Assigned (20160330)  None (candidate not yet proposed)    View

Page 612 of 20943, showing 5 records out of 104715 total, starting on record 3056, ending on 3060

Actions