CVE List

Id CVE No. Status Description Phase Votes Comments Actions
15087  CVE-2005-3883  Candidate  CRLF injection vulnerability in the mb_send_mail function in PHP before 5.1.0 might allow remote attackers to inject arbitrary e-mail headers via line feeds (LF) in the "To" address argument.  Assigned (20051129)  None (candidate not yet proposed)    View
80623  CVE-2015-3346  Candidate  SQL injection vulnerability in the WikiWiki module before 6.x-1.2 for Drupal allows remote attackers to execute arbitrary SQL commands via unspecified vectors.  Assigned (20150421)  None (candidate not yet proposed)    View
15343  CVE-2005-4139  Candidate  Multiple SQL injection vulnerabilities in ThWboard before 3 Beta 2.84 allow remote attackers to execute arbitrary SQL commands via the (1) year parameter in calendar.php, (2) user parameter array in v_profile.php, and (3) the userid parameter in misc.php.  Assigned (20051209)  None (candidate not yet proposed)    View
80879  CVE-2015-3602  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20150430)  None (candidate not yet proposed)    View
15599  CVE-2005-4395  Candidate  Cross-site scripting (XSS) vulnerability in FarCry 3.0 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified search parameters, possibly the criteria parameter.  Assigned (20051220)  None (candidate not yet proposed)    View

Page 19002 of 20943, showing 5 records out of 104715 total, starting on record 95006, ending on 95010

Actions