CVE List

Id CVE No. Status Description Phase Votes Comments Actions
79079  CVE-2015-1802  Candidate  The bdfReadProperties function in bitmap/bdfread.c in X.Org libXfont before 1.4.9 and 1.5.x before 1.5.1 allows remote authenticated users to cause a denial of service (out-of-bounds write and crash) or possibly execute arbitrary code via a (1) negative or (2) large property count in a BDF font file.  Assigned (20150217)  None (candidate not yet proposed)    View
13799  CVE-2005-2593  Candidate  Parlano MindAlign 5.0 and later versions uses weak encryption, with unknown impact and attack vectors.  Assigned (20050817)  None (candidate not yet proposed)    View
79335  CVE-2015-2058  Candidate  c2s/c2s.c in Jabber Open Source Server 2.3.2 and earlier truncates data without ensuring it remains valid UTF-8, which allows remote authenticated users to read system memory or possibly have other unspecified impact via a crafted JID.  Assigned (20150223)  None (candidate not yet proposed)    View
14055  CVE-2005-2849  Candidate  Argument injection vulnerability in Barracuda Spam Firewall running firmware 3.1.16 and 3.1.17 allows remote attackers to (1) read portions of source code via the -f option to Dig (dig_device.cgi), (2) determine file existence via the -r argument to Tcpdump (tcpdump_device.cgi) or (3) modify files in the cgi-bin directory via the -w argument to Tcpdump.  Assigned (20050908)  None (candidate not yet proposed)    View
79591  CVE-2015-2314  Candidate  SQL injection vulnerability in the WPML plugin before 3.1.9 for WordPress allows remote attackers to execute arbitrary SQL commands via the lang parameter in the HTTP Referer header in a wp-link-ajax action to comments/feed.  Assigned (20150317)  None (candidate not yet proposed)    View

Page 18960 of 20943, showing 5 records out of 104715 total, starting on record 94796, ending on 94800

Actions