NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 55094 | CVE-2007-2935 | core/spellcheck/spellcheck.php in Fundanemt before 2.2.0.1 allows remote attackers to execute arbitrary commands via shell metacharacters in the dict parameter. | 2 | 7.5 | High | 2017-01-07 | 2008-11-15 | View | |
| 4502 | CVE-2008-4688 | core/string_api.php in Mantis before 1.1.3 does not check the privileges of the viewer before composing a link with issue data in the source anchor, which allows remote attackers to discover an issue"s title and status via a request with a modified issue number. | 2 | 5 | Medium | 2017-01-03 | 2009-02-10 | View | |
| 33843 | CVE-2014-6316 | core/string_api.php in MantisBT before 1.2.18 does not properly categorize URLs when running under the web root, which allows remote attackers to conduct open redirect and phishing attacks via a crafted URL in the return parameter to login_page.php. | 2 | 5.8 | Medium | 2017-01-19 | 2017-01-02 | View | |
| 26943 | CVE-2015-5880 | CoreAnimation in Apple iOS before 9 allows attackers to bypass intended IOSurface restrictions and obtain screen-framebuffer access via a crafted background app. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-21 | View | |
| 11639 | CVE-2010-0059 | CoreAudio in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via crafted audio content with QDM2 encoding, which triggers a buffer overflow due to inconsistent length fields, related to QDCA. | 2 | 6.8 | Medium | 2017-01-18 | 2010-08-21 | View |
Page 2670 of 17672, showing 5 records out of 88360 total, starting on record 13346, ending on 13350