CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
13326 | CVE-2005-2120 | Candidate | Stack-based buffer overflow in the Plug and Play (PnP) service (UMPNPMGR.DLL) in Microsoft Windows 2000 SP4, and XP SP1 and SP2, allows remote or local authenticated attackers to execute arbitrary code via a large number of "" (backslash) characters in a registry key name, which triggers the overflow in a wsprintfW function call. | Assigned (20050702) | None (candidate not yet proposed) | View | |
78862 | CVE-2015-1585 | Candidate | Fat Free CRM before 0.13.6 allows remote attackers to conduct cross-site request forgery (CSRF) attacks via a request without the authenticity_token, as demonstrated by a crafted HTML page that creates a new administrator account. | Assigned (20150211) | None (candidate not yet proposed) | View | |
13582 | CVE-2005-2376 | Candidate | Buffer overflow in Race Driver 1.20 and earlier allows remote attackers to cause a denial of service (application crash) via a long (1) nickname or (2) chat message. | Assigned (20050726) | None (candidate not yet proposed) | View | |
79118 | CVE-2015-1841 | Candidate | The Web Admin interface in Red Hat Enterprise Virtualization Manager (RHEV-M) allows local users to bypass the timeout function by selecting a VM in the VM grid view. | Assigned (20150217) | None (candidate not yet proposed) | View | |
13838 | CVE-2005-2632 | Candidate | SQL injection vulnerability in login_admin_mediabox404.php in mediabox404 1.2 and earlier allows remote attackers to execute arbitrary SQL commands via the User field. | Assigned (20050820) | None (candidate not yet proposed) | View |
Page 1148 of 20943, showing 5 records out of 104715 total, starting on record 5736, ending on 5740