CVE List

Id CVE No. Status Description Phase Votes Comments Actions
76808  CVE-2014-9507  Candidate  MediaWiki 1.21.x, 1.22.x before 1.22.14, and 1.23.x before 1.23.7, when $wgContentHandlerUseDB is enabled, allows remote attackers to conduct cross-site scripting (XSS) attacks by setting the content model for a revision to JS.  Assigned (20150104)  None (candidate not yet proposed)    View
11528  CVE-2005-0322  Candidate  MERAK Mail Server 7.6.0 with Icewarp Web Mail 5.3.0 and Mail Server 7.6.4r with Icewarp Mail Server 5.3.2 uses weak encryption in the (1) users.cfg, (2) settings.cfg, (3) users.dat or (4) user.dat files, which allows local users to extract the passwords.  Assigned (20050210)  None (candidate not yet proposed)    View
77064  CVE-2014-9763  Candidate  imlib2 before 1.4.7 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted PNM file.  Assigned (20160122)  None (candidate not yet proposed)    View
11784  CVE-2005-0578  Candidate  Firefox before 1.0.1 and Mozilla Suite before 1.7.6 use a predictable filename for the plugin temporary directory, which allows local users to delete arbitrary files of other users via a symlink attack on the plugtmp directory.  Assigned (20050227)  None (candidate not yet proposed)    View
77320  CVE-2015-0057  Candidate  win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allows local users to gain privileges via a crafted application, aka "Win32k Elevation of Privilege Vulnerability."  Assigned (20141118)  None (candidate not yet proposed)    View

Page 656 of 20943, showing 5 records out of 104715 total, starting on record 3276, ending on 3280

Actions