CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
79079 | CVE-2015-1802 | Candidate | The bdfReadProperties function in bitmap/bdfread.c in X.Org libXfont before 1.4.9 and 1.5.x before 1.5.1 allows remote authenticated users to cause a denial of service (out-of-bounds write and crash) or possibly execute arbitrary code via a (1) negative or (2) large property count in a BDF font file. | Assigned (20150217) | None (candidate not yet proposed) | View | |
13799 | CVE-2005-2593 | Candidate | Parlano MindAlign 5.0 and later versions uses weak encryption, with unknown impact and attack vectors. | Assigned (20050817) | None (candidate not yet proposed) | View | |
79335 | CVE-2015-2058 | Candidate | c2s/c2s.c in Jabber Open Source Server 2.3.2 and earlier truncates data without ensuring it remains valid UTF-8, which allows remote authenticated users to read system memory or possibly have other unspecified impact via a crafted JID. | Assigned (20150223) | None (candidate not yet proposed) | View | |
14055 | CVE-2005-2849 | Candidate | Argument injection vulnerability in Barracuda Spam Firewall running firmware 3.1.16 and 3.1.17 allows remote attackers to (1) read portions of source code via the -f option to Dig (dig_device.cgi), (2) determine file existence via the -r argument to Tcpdump (tcpdump_device.cgi) or (3) modify files in the cgi-bin directory via the -w argument to Tcpdump. | Assigned (20050908) | None (candidate not yet proposed) | View | |
79591 | CVE-2015-2314 | Candidate | SQL injection vulnerability in the WPML plugin before 3.1.9 for WordPress allows remote attackers to execute arbitrary SQL commands via the lang parameter in the HTTP Referer header in a wp-link-ajax action to comments/feed. | Assigned (20150317) | None (candidate not yet proposed) | View |
Page 18960 of 20943, showing 5 records out of 104715 total, starting on record 94796, ending on 94800