CVE List

Id CVE No. Status Description Phase Votes Comments Actions
78344  CVE-2015-1067  Candidate  Secure Transport in Apple iOS before 8.2, Apple OS X through 10.10.2, and Apple TV before 7.1 does not properly restrict TLS state transitions, which makes it easier for remote attackers to conduct cipher-downgrade attacks to EXPORT_RSA ciphers via crafted TLS traffic, related to the "FREAK" issue, a different vulnerability than CVE-2015-0204 and CVE-2015-1637.  Assigned (20150116)  None (candidate not yet proposed)    View
13064  CVE-2005-1858  Candidate  FUSE 2.x before 2.3.0 does not properly clear previously used memory from unfilled pages when the filesystem returns a short byte count to a read request, which may allow local users to obtain sensitive information.  Assigned (20050606)  None (candidate not yet proposed)    View
78600  CVE-2015-1323  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20150122)  None (candidate not yet proposed)    View
13320  CVE-2005-2114  Candidate  Mozilla 1.7.8, Firefox 1.0.4, Camino 0.8.4, Netscape 8.0.2, and K-Meleon 0.9, and possibly other products that use the Gecko engine, allow remote attackers to cause a denial of service (application crash) via JavaScript that repeatedly calls an empty function.  Assigned (20050701)  None (candidate not yet proposed)    View
78856  CVE-2015-1579  Candidate  Directory traversal vulnerability in the Elegant Themes Divi theme for WordPress allows remote attackers to read arbitrary files via a .. (dot dot) in the img parameter in a revslider_show_image action to wp-admin/admin-ajax.php. NOTE: this vulnerability may be a duplicate of CVE-2014-9734.  Assigned (20150211)  None (candidate not yet proposed)    View

Page 664 of 20943, showing 5 records out of 104715 total, starting on record 3316, ending on 3320

Actions