NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 23649 | CVE-2015-1288 | The Spellcheck API implementation in Google Chrome before 44.0.2403.89 does not use an HTTPS session for downloading a Hunspell dictionary, which allows man-in-the-middle attackers to deliver incorrect spelling suggestions or possibly have unspecified other impact via a crafted file, a related issue to CVE-2015-1263. | 2 | 6.8 | Medium | 2017-01-19 | 2016-12-02 | View | |
| 61563 | CVE-2006-2878 | The spellchecker (spellcheck.php) in DokuWiki 2006/06/04 and earlier allows remote attackers to insert and execute arbitrary PHP code via "complex curly syntax" that is inserted into a regular expression that is processed by preg_replace with the /e (executable) modifier. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
| 14229 | CVE-2010-2794 | The SPICE (aka spice-xpi) plug-in 2.2 for Firefox allows local users to overwrite arbitrary files via a symlink attack on an unspecified log file. | 2 | 3.3 | Low | 2017-01-18 | 2010-09-08 | View | |
| 7151 | CVE-2011-0012 | The SPICE Firefox plug-in (spice-xpi) 2.4, 2.3, 2.2, and possibly other versions allows local users to overwrite arbitrary files via a symlink attack on the usbrdrctl log file, which has a predictable name. | 2 | 3.3 | Low | 2017-01-07 | 2011-04-18 | View | |
| 8147 | CVE-2011-1179 | The SPICE Firefox plug-in (spice-xpi) 2.4, 2.3, 2.2, and possibly other versions allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via vectors related to (1) plugin/nsScriptablePeer.cpp and (2) plugin/plugin.cpp, which trigger multiple uses of an uninitialized pointer. | 2 | 5.1 | Medium | 2017-01-07 | 2011-04-20 | View |
Page 14621 of 17672, showing 5 records out of 88360 total, starting on record 73101, ending on 73105