CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
13578 | CVE-2005-2372 | Candidate | Oracle Forms 4.5 through 10g starts form executables from arbitrary directories and executes them as the Oracle or System user, which allows attackers to execute arbitrary code by uploading a malicious .fmx file and referencing it using an absolute pathname argument in the (1) form or (2) module parameters to f90servlet. | Assigned (20050726) | None (candidate not yet proposed) | View | |
79114 | CVE-2015-1837 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20150217) | None (candidate not yet proposed) | View | |
13834 | CVE-2005-2628 | Candidate | Macromedia Flash 6 and 7 (Flash.ocx) allows remote attackers to execute arbitrary code via a SWF file with a modified frame type identifier that is used as an out-of-bounds array index to a function pointer. | Assigned (20050819) | None (candidate not yet proposed) | View | |
79370 | CVE-2015-2093 | Candidate | Stack-based buffer overflow in the Connect function in the WebGate WebEyeAudio ActiveX control allows remote attackers to execute arbitrary code via a crafted value. | Assigned (20150226) | None (candidate not yet proposed) | View | |
14090 | CVE-2005-2884 | Candidate | Cross-site scripting (XSS) vulnerability in events.php in Land Down Under (LDU) 801 and earlier allows remote attackers to inject arbitrary web script or HTML via the Description field in an event. | Assigned (20050914) | None (candidate not yet proposed) | View |
Page 1429 of 20943, showing 5 records out of 104715 total, starting on record 7141, ending on 7145