CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
77827 | CVE-2015-0564 | Candidate | Buffer underflow in the ssl_decrypt_record function in epan/dissectors/packet-ssl-utils.c in Wireshark 1.10.x before 1.10.12 and 1.12.x before 1.12.3 allows remote attackers to cause a denial of service (application crash) via a crafted packet that is improperly handled during decryption of an SSL session. | Assigned (20150106) | None (candidate not yet proposed) | View | |
12547 | CVE-2005-1341 | Candidate | Apple Terminal 1.4.4 allows attackers to execute arbitrary commands via terminal escape sequences. | Assigned (20050427) | None (candidate not yet proposed) | View | |
78083 | CVE-2015-0820 | Candidate | Mozilla Firefox before 36.0 does not properly restrict transitions of JavaScript objects from a non-extensible state to an extensible state, which allows remote attackers to bypass a Caja Compiler sandbox protection mechanism or a Secure EcmaScript sandbox protection mechanism via a crafted web site. | Assigned (20150107) | None (candidate not yet proposed) | View | |
12803 | CVE-2005-1597 | Candidate | Cross-site scripting (XSS) vulnerability in (1) search.php and (2) topics.php for Invision Power Board (IPB) 2.0.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the highlite parameter. | Assigned (20050516) | None (candidate not yet proposed) | View | |
78339 | CVE-2015-1062 | Candidate | MobileStorageMounter in Apple iOS before 8.2 and Apple TV before 7.1 does not delete invalid disk-image folders, which allows attackers to create folders in arbitrary filesystem locations via a crafted app. | Assigned (20150116) | None (candidate not yet proposed) | View |
Page 868 of 20943, showing 5 records out of 104715 total, starting on record 4336, ending on 4340