CVE List

Id CVE No. Status Description Phase Votes Comments Actions
14573  CVE-2005-3367  Candidate  Cross-site scripting (XSS) vulnerability in journal.php in SparkleBlog 2.1 allows remote attackers to inject arbitrary web script or HTML via the name field.  Assigned (20051029)  None (candidate not yet proposed)    View
80109  CVE-2015-2832  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20150402)  None (candidate not yet proposed)    View
14829  CVE-2005-3625  Candidate  Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial of service (infinite loop) via streams that end prematurely, as demonstrated using the (1) CCITTFaxDecode and (2) DCTDecode streams, aka "Infinite CPU spins."  Assigned (20051116)  None (candidate not yet proposed)    View
80365  CVE-2015-3088  Candidate  Heap-based buffer overflow in Adobe Flash Player before 13.0.0.289 and 14.x through 17.x before 17.0.0.188 on Windows and OS X and before 11.2.202.460 on Linux, Adobe AIR before 17.0.0.172, Adobe AIR SDK before 17.0.0.172, and Adobe AIR SDK & Compiler before 17.0.0.172 allows attackers to execute arbitrary code via unspecified vectors.  Assigned (20150409)  None (candidate not yet proposed)    View
15085  CVE-2005-3881  Candidate  SQL injection vulnerability in search.php in AtlantisFAQ Knowledge Base Software 2.03 and earlier allows remote attackers to execute arbitrary SQL commands via the searchStr parameter.  Assigned (20051129)  None (candidate not yet proposed)    View

Page 18842 of 20943, showing 5 records out of 104715 total, starting on record 94206, ending on 94210

Actions