CVE List

Id CVE No. Status Description Phase Votes Comments Actions
15118  CVE-2005-3914  Candidate  Multiple SQL injection vulnerabilities in AFFcommerce 1.1.4 allow remote attackers to execute arbitrary SQL commands via (1) the cl parameter to SubCategory.php and the item_id parameter in (2) ItemInfo.php and (3) ItemReview.php.  Assigned (20051130)  None (candidate not yet proposed)    View
80654  CVE-2015-3377  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20150421)  None (candidate not yet proposed)    View
15374  CVE-2005-4170  Candidate  SQL injection vulnerability in eFiction 1.1 allows remote attackers to execute arbitrary SQL commands via the uid parameter to viewuser.php.  Assigned (20051211)  None (candidate not yet proposed)    View
80910  CVE-2015-3633  Candidate  Foxit Reader, Enterprise Reader, and PhantomPDF before 7.1.5 allow remote attackers to cause a denial of service (memory corruption and crash) via vectors related to digital signatures.  Assigned (20150501)  None (candidate not yet proposed)    View
15630  CVE-2005-4426  Candidate  Interpretation conflict in YaBB before 2.1 allows remote authenticated users to inject arbitrary web script or HTML via HTML in a file with a GIF file extension, which causes the HTML to be executed by a victim who views the file in Internet Explorer as a result of CVE-2005-3312. NOTE: it could be argued that this vulnerability is due to a design flaw in Internet Explorer and the proper fix should be in that browser; if so, then this should not be treated as a vulnerability in YaBB.  Assigned (20051220)  None (candidate not yet proposed)    View

Page 1135 of 20943, showing 5 records out of 104715 total, starting on record 5671, ending on 5675

Actions