CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
80147 | CVE-2015-2870 | Candidate | Cross-site scripting (XSS) vulnerability on Chiyu BF-630, BF-630W, and BF-660C fingerprint access-control devices allows remote attackers to inject arbitrary web script or HTML via a SCRIPT element. | Assigned (20150403) | None (candidate not yet proposed) | View | |
14867 | CVE-2005-3663 | Candidate | Unquoted Windows search path vulnerability in Kaspersky Anti-Virus 5.0 might allow local users to gain privileges via a malicious "program.exe" file in the C: folder. | Assigned (20051118) | None (candidate not yet proposed) | View | |
80403 | CVE-2015-3126 | Candidate | Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allow attackers to cause a denial of service (NULL pointer dereference) or possibly have unspecified other impact via unknown vectors, a different vulnerability than CVE-2015-4429. | Assigned (20150409) | None (candidate not yet proposed) | View | |
15123 | CVE-2005-3919 | Candidate | Cross-site scripting (XSS) vulnerability in PBLang 4.65 allows remote attackers to inject arbitrary web script or HTML via multiple fields in (1) UCP.php and (2) SendPm.php. | Assigned (20051130) | None (candidate not yet proposed) | View | |
80659 | CVE-2015-3382 | Candidate | Multiple cross-site request forgery (CSRF) vulnerabilities in the Node basket module for Drupal allow remote attackers to hijack the authentication of arbitrary users for requests that (1) add or (2) remove nodes from a basket via unspecified vectors. | Assigned (20150421) | None (candidate not yet proposed) | View |
Page 1519 of 20943, showing 5 records out of 104715 total, starting on record 7591, ending on 7595