CVE List

Id CVE No. Status Description Phase Votes Comments Actions
79638  CVE-2015-2361  Candidate  Hyper-V in Microsoft Windows 8.1 and Windows Server 2012 R2 does not properly initialize guest OS system data structures, which allows guest OS users to execute arbitrary code on the host OS or cause a denial of service (buffer overflow) by leveraging guest OS privileges, aka "Hyper-V Buffer Overflow Vulnerability."  Assigned (20150319)  None (candidate not yet proposed)    View
14358  CVE-2005-3152  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in CubeCart 3.0.3 allow remote attackers to inject arbitrary web script or HTML via the redir parameter to (1) cart.php or (2) index.php, or (3) the searchStr parameter in a viewCat action to index.php. Note: vectors (1) and (2) were later reported to affect 3.0.7-pl1.  Assigned (20051005)  None (candidate not yet proposed)    View
79894  CVE-2015-2617  Candidate  Unspecified vulnerability in Oracle MySQL Server 5.6.24 and earlier allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors related to Partition.  Assigned (20150320)  None (candidate not yet proposed)    View
14614  CVE-2005-3408  Candidate  SQL injection vulnerability in news.php in gCards version 1.43 allows remote attackers to execute arbitrary SQL commands via the limit parameter.  Assigned (20051101)  None (candidate not yet proposed)    View
80150  CVE-2015-2873  Candidate  Trend Micro Deep Discovery Inspector (DDI) on Deep Discovery Threat appliances with software before 3.5.1477, 3.6.x before 3.6.1217, 3.7.x before 3.7.1248, 3.8.x before 3.8.1263, and other versions allows remote attackers to obtain sensitive information or change the configuration via a direct request to the (1) system log URL, (2) whitelist URL, or (3) blacklist URL.  Assigned (20150403)  None (candidate not yet proposed)    View

Page 1749 of 20943, showing 5 records out of 104715 total, starting on record 8741, ending on 8745

Actions