CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
15108 | CVE-2005-3904 | Candidate | Unspecified vulnerability in Java Management Extensions (JMX) in Java JDK and JRE 5.0 Update 3, 1.4.2 and later, 1.3.1 and later allows remote attackers to escape the Java sandbox and access arbitrary files or execute arbitrary application via unknown attack vectors. | Assigned (20051130) | None (candidate not yet proposed) | View | |
80644 | CVE-2015-3367 | Candidate | Multiple cross-site request forgery (CSRF) vulnerabilities in the Patterns module before 7.x-2.2 for Drupal allow remote attackers to hijack the authentication of administrators for requests that (1) restore, (2) publish, or (3) unpublish a pattern via unspecified vectors. | Assigned (20150421) | None (candidate not yet proposed) | View | |
15364 | CVE-2005-4160 | Candidate | Directory traversal vulnerability in getdox.php in Torrential 1.2 allows remote attackers to read arbitrary files via "../" sequences in the query string argument. | Assigned (20051211) | None (candidate not yet proposed) | View | |
80900 | CVE-2015-3623 | Candidate | XML external entity (XXE) vulnerability in QlikTech Qlikview before 11.20 SR12 allows remote attackers to conduct server-side request forgery (SSRF) attacks and read arbitrary files via crafted XML data in a request to AccessPoint.aspx. | Assigned (20150430) | None (candidate not yet proposed) | View | |
15620 | CVE-2005-4416 | Candidate | SQL injection vulnerability in index.php in TML CMS 0.5 allows remote attackers to execute arbitrary SQL commands via the id parameter. | Assigned (20051220) | None (candidate not yet proposed) | View |
Page 1489 of 20943, showing 5 records out of 104715 total, starting on record 7441, ending on 7445