CVE List

Id CVE No. Status Description Phase Votes Comments Actions
14858  CVE-2005-3654  Candidate  Blue Coat Systems Inc. WinProxy before 6.1a allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a large number of packets with 0xFF characters to the Telnet port (TCP 23), which corrupts the heap.  Assigned (20051118)  None (candidate not yet proposed)    View
80394  CVE-2015-3117  Candidate  Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-3123, CVE-2015-3130, CVE-2015-3133, CVE-2015-3134, and CVE-2015-4431.  Assigned (20150409)  None (candidate not yet proposed)    View
15114  CVE-2005-3910  Candidate  merchants/index.php in Post Affiliate Pro 2.0.4 and earlier, with magic_quotes_gpc disabled, allows remote attackers to include arbitrary local files via the md parameter, possibly due to a directory traversal vulnerability.  Assigned (20051130)  None (candidate not yet proposed)    View
80650  CVE-2015-3373  Candidate  The Amazon AWS module before 7.x-1.3 for Drupal uses the base URL and AWS access key to generate the access token, which makes it easier for remote attackers to guess the token value and create backups via a crafted URL.  Assigned (20150421)  None (candidate not yet proposed)    View
15370  CVE-2005-4166  Candidate  Cross-site scripting (XSS) vulnerability in password.asp in DUWare DUportal Pro 3.4.3 allows remote attackers to inject arbitrary web script or HTML via the result parameter.  Assigned (20051211)  None (candidate not yet proposed)    View

Page 1431 of 20943, showing 5 records out of 104715 total, starting on record 7151, ending on 7155

Actions