CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
14573 | CVE-2005-3367 | Candidate | Cross-site scripting (XSS) vulnerability in journal.php in SparkleBlog 2.1 allows remote attackers to inject arbitrary web script or HTML via the name field. | Assigned (20051029) | None (candidate not yet proposed) | View | |
80109 | CVE-2015-2832 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20150402) | None (candidate not yet proposed) | View | |
14829 | CVE-2005-3625 | Candidate | Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial of service (infinite loop) via streams that end prematurely, as demonstrated using the (1) CCITTFaxDecode and (2) DCTDecode streams, aka "Infinite CPU spins." | Assigned (20051116) | None (candidate not yet proposed) | View | |
80365 | CVE-2015-3088 | Candidate | Heap-based buffer overflow in Adobe Flash Player before 13.0.0.289 and 14.x through 17.x before 17.0.0.188 on Windows and OS X and before 11.2.202.460 on Linux, Adobe AIR before 17.0.0.172, Adobe AIR SDK before 17.0.0.172, and Adobe AIR SDK & Compiler before 17.0.0.172 allows attackers to execute arbitrary code via unspecified vectors. | Assigned (20150409) | None (candidate not yet proposed) | View | |
15085 | CVE-2005-3881 | Candidate | SQL injection vulnerability in search.php in AtlantisFAQ Knowledge Base Software 2.03 and earlier allows remote attackers to execute arbitrary SQL commands via the searchStr parameter. | Assigned (20051129) | None (candidate not yet proposed) | View |
Page 18842 of 20943, showing 5 records out of 104715 total, starting on record 94206, ending on 94210