CVE List

Id CVE No. Status Description Phase Votes Comments Actions
81126  CVE-2015-3849  Candidate  The Region_createFromParcel function in core/jni/android/graphics/Region.cpp in Region in Android before 5.1.1 LMY48M does not check the return values of certain read operations, which allows attackers to execute arbitrary code via an application that sends a crafted message to a service, aka internal bug 21585255.  Assigned (20150512)  None (candidate not yet proposed)    View
15846  CVE-2005-4642  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in HydroBB 1.0.0 Beta 2 allow remote attackers to inject arbitrary web script or HTML via the s parameter to (1) search.php, (2) members.php, (3) stats.php, (4) viewforum.php, (5) register.php, (6) usercp.php, (7) groups.php, (8) pms.php, and (9) calendar.php.  Assigned (20060110)  None (candidate not yet proposed)    View
81382  CVE-2015-4105  Candidate  Xen 3.3.x through 4.5.x enables logging for PCI MSI-X pass-through error messages, which allows local x86 HVM guests to cause a denial of service (host disk consumption) via certain invalid operations.  Assigned (20150527)  None (candidate not yet proposed)    View
16102  CVE-2005-4898  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20161014)  None (candidate not yet proposed)    View
81638  CVE-2015-4361  Candidate  Cross-site request forgery (CSRF) vulnerability in the Registration codes module before 6.x-1.6 for Drupal allows remote attackers to hijack the authentication of administrators for requests that delete registration codes via unspecified vectors.  Assigned (20150605)  None (candidate not yet proposed)    View

Page 18882 of 20943, showing 5 records out of 104715 total, starting on record 94406, ending on 94410

Actions