CVE List

Id CVE No. Status Description Phase Votes Comments Actions
19459  CVE-2006-3355  Candidate  Heap-based buffer overflow in httpdget.c in mpg123 before 0.59s-rll allows remote attackers to execute arbitrary code via a long URL, which is not properly terminated before being used with the strncpy function. NOTE: This appears to be the result of an incomplete patch for CVE-2004-0982.  Assigned (20060706)  None (candidate not yet proposed)    View
84995  CVE-2015-7718  Candidate  mediaserver in Android 5.x before 5.1.1 LMY48T and 6.0 before 2015-10-01 allows attackers to cause a denial of service (process crash) via unspecified vectors, aka internal bug 22278703, a different vulnerability than CVE-2015-6605.  Assigned (20151006)  None (candidate not yet proposed)    View
19715  CVE-2006-3611  Candidate  Directory traversal vulnerability in pm.php in Phorum 5 allows remote authenticated users to include and execute arbitrary local files via directory traversal sequences in the GLOBALS[template] parameter, as demonstrated by injecting PHP sequences into a log file, which is then included by pm.php.  Assigned (20060714)  None (candidate not yet proposed)    View
85251  CVE-2015-7974  Candidate  NTP 4.x before 4.2.8p6 and 4.3.x before 4.3.90 do not verify peer associations of symmetric keys when authenticating packets, which might allow remote attackers to conduct impersonation attacks via an arbitrary trusted key, aka a "skeleton key."  Assigned (20151023)  None (candidate not yet proposed)    View
19971  CVE-2006-3867  Candidate  Unspecified vulnerability in Microsoft Excel 2000, 2002, 2003, 2004 for Mac, v.X for Mac, and Excel Viewer 2003 allows user-assisted attackers to execute arbitrary code via a crafted Lotus 1-2-3 file, a different vulnerability than CVE-2006-2387 and CVE-2006-3875.  Assigned (20060726)  None (candidate not yet proposed)    View

Page 879 of 20943, showing 5 records out of 104715 total, starting on record 4391, ending on 4395

Actions