CVE List

Id CVE No. Status Description Phase Votes Comments Actions
15593  CVE-2005-4389  Candidate  search.cfm in CONTENS 3.0 and earlier allows remote attackers to obtain the full server path via invalid (1) submit.y, (2) bool, (3) itemsperpage, (4) submit, (5) submit.x, (6) criteria, (7) advanced, and (8) intern parameters.  Assigned (20051220)  None (candidate not yet proposed)    View
81129  CVE-2015-3852  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20150512)  None (candidate not yet proposed)    View
15849  CVE-2005-4645  Candidate  SQL injection vulnerability in index.php in 3CFR allows remote attackers to execute arbitrary SQL commands via the LangueID parameter.  Assigned (20060111)  None (candidate not yet proposed)    View
81385  CVE-2015-4108  Candidate  Multiple cross-site request forgery (CSRF) vulnerabilities in Wing FTP Server before 4.4.7 allow remote attackers to hijack the authentication of administrators for requests that (1) execute arbitrary code via a crafted request to admin_lua_script.html or (2) add a domain administrator via a crafted request to admin_addadmin.html.  Assigned (20150528)  None (candidate not yet proposed)    View
16105  CVE-2006-0001  Candidate  Stack-based buffer overflow in Microsoft Publisher 2000 through 2003 allows user-assisted remote attackers to execute arbitrary code via a crafted PUB file, which causes an overflow when parsing fonts.  Assigned (20051109)  None (candidate not yet proposed)    View

Page 19153 of 20943, showing 5 records out of 104715 total, starting on record 95761, ending on 95765

Actions