CVE List

Id CVE No. Status Description Phase Votes Comments Actions
14572  CVE-2005-3366  Candidate  PHP file inclusion vulnerability in index.php in PHP iCalendar 2.0a2 through 2.0.1 allows remote attackers to execute arbitrary PHP code and include arbitrary local files via the phpicalendar cookie. NOTE: this is not a cross-site scripting (XSS) issue as claimed by the original researcher.  Assigned (20051029)  None (candidate not yet proposed)    View
80108  CVE-2015-2831  Candidate  Buffer overflow in das_watchdog 0.9.0 allows local users to execute arbitrary code with root privileges via a large string in the XAUTHORITY environment variable.  Assigned (20150402)  None (candidate not yet proposed)    View
14828  CVE-2005-3624  Candidate  The CCITTFaxStream::CCITTFaxStream function in Stream.cc for xpdf, gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others allows attackers to corrupt the heap via negative or large integers in a CCITTFaxDecode stream, which lead to integer overflows and integer underflows.  Assigned (20051116)  None (candidate not yet proposed)    View
80364  CVE-2015-3087  Candidate  Integer overflow in Adobe Flash Player before 13.0.0.289 and 14.x through 17.x before 17.0.0.188 on Windows and OS X and before 11.2.202.460 on Linux, Adobe AIR before 17.0.0.172, Adobe AIR SDK before 17.0.0.172, and Adobe AIR SDK & Compiler before 17.0.0.172 allows attackers to execute arbitrary code via unspecified vectors.  Assigned (20150409)  None (candidate not yet proposed)    View
15084  CVE-2005-3880  Candidate  Multiple SQL injection vulnerabilities in Omnistar KBase 4.0 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) article_id parameter in users/comments.php, (2) category_id and (3) id parameters in users/kb.php.  Assigned (20051129)  None (candidate not yet proposed)    View

Page 19373 of 20943, showing 5 records out of 104715 total, starting on record 96861, ending on 96865

Actions