CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
76810 | CVE-2014-9509 | Candidate | The frontend rendering component in TYPO3 4.5.x before 4.5.39, 4.6.x through 6.2.x before 6.2.9, and 7.x before 7.0.2, when config.prefixLocalAnchors is set to all or cached, allows remote attackers to have an unspecified impact (possibly resource consumption) via a "Cache Poisoning" attack using a URL with arbitrary arguments, which triggers a reload of the page. | Assigned (20150104) | None (candidate not yet proposed) | View | |
11530 | CVE-2005-0324 | Candidate | Infinite Mobile Delivery Webmail 2.6 allows remote attackers to gain sensitive information via an HTTP request that contains invalid characters for a Windows foldername, which reveals the path in an error message. | Assigned (20050210) | None (candidate not yet proposed) | View | |
77066 | CVE-2014-9765 | Candidate | Buffer overflow in the main_get_appheader function in xdelta3-main.h in xdelta3 before 3.0.9 allows remote attackers to execute arbitrary code via a crafted input file. | Assigned (20160208) | None (candidate not yet proposed) | View | |
11786 | CVE-2005-0580 | Candidate | cmd5checkpw, when running setuid, does not properly drop privileges before calling the execvp function, which allows local users to read the poppasswd file. | Assigned (20050227) | None (candidate not yet proposed) | View | |
77322 | CVE-2015-0059 | Candidate | win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2008 R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allows local users to gain privileges via a crafted TrueType font, aka "TrueType Font Parsing Remote Code Execution Vulnerability." | Assigned (20141118) | None (candidate not yet proposed) | View |
Page 815 of 20943, showing 5 records out of 104715 total, starting on record 4071, ending on 4075