CVE List

Id CVE No. Status Description Phase Votes Comments Actions
13329  CVE-2005-2123  Candidate  Multiple integer overflows in the Graphics Rendering Engine (GDI32.DLL) in Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1 allow remote attackers to execute arbitrary code via crafted Windows Metafile (WMF) and Enhanced Metafile (EMF) format images that lead to heap-based buffer overflows, as demonstrated using MRBP16::bCheckRecord.  Assigned (20050702)  None (candidate not yet proposed)    View
78865  CVE-2015-1588  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20150211)  None (candidate not yet proposed)    View
13585  CVE-2005-2379  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in Oracle Reports 9.0.2 allow remote attackers to inject arbitrary web script or HTML via the (1) debug parameter to showenv, (2) test parameter to parsequery, or (3) delimiter or (4) CELLWRAPPER parameter to rwservlet.  Assigned (20050726)  None (candidate not yet proposed)    View
79121  CVE-2015-1844  Candidate  Foreman before 1.7.5 allows remote authenticated users to bypass organization and location restrictions by connecting through the REST API.  Assigned (20150217)  None (candidate not yet proposed)    View
13841  CVE-2005-2635  Candidate  Multiple directory traversal vulnerabilities in phpAdsNew and phpPgAds before 2.0.6 allow remote attackers to include arbitrary files via a .. (dot dot) in the (1) layerstyle parameter to adlayer.php or (2) language parameter to js-form.php.  Assigned (20050820)  None (candidate not yet proposed)    View

Page 1363 of 20943, showing 5 records out of 104715 total, starting on record 6811, ending on 6815

Actions