CVE List

Id CVE No. Status Description Phase Votes Comments Actions
14828  CVE-2005-3624  Candidate  The CCITTFaxStream::CCITTFaxStream function in Stream.cc for xpdf, gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others allows attackers to corrupt the heap via negative or large integers in a CCITTFaxDecode stream, which lead to integer overflows and integer underflows.  Assigned (20051116)  None (candidate not yet proposed)    View
80364  CVE-2015-3087  Candidate  Integer overflow in Adobe Flash Player before 13.0.0.289 and 14.x through 17.x before 17.0.0.188 on Windows and OS X and before 11.2.202.460 on Linux, Adobe AIR before 17.0.0.172, Adobe AIR SDK before 17.0.0.172, and Adobe AIR SDK & Compiler before 17.0.0.172 allows attackers to execute arbitrary code via unspecified vectors.  Assigned (20150409)  None (candidate not yet proposed)    View
15084  CVE-2005-3880  Candidate  Multiple SQL injection vulnerabilities in Omnistar KBase 4.0 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) article_id parameter in users/comments.php, (2) category_id and (3) id parameters in users/kb.php.  Assigned (20051129)  None (candidate not yet proposed)    View
80620  CVE-2015-3343  Candidate  Cross-site request forgery (CSRF) vulnerability in the OPAC module before 7.x-2.3 for Drupal allows remote attackers to hijack the authentication of unspecified victims for requests that remove a mapping via unknown vectors.  Assigned (20150421)  None (candidate not yet proposed)    View
15340  CVE-2005-4136  Candidate  Cross-site scripting (XSS) vulnerability in login.php in DRZES HMS 3.2 allows remote attackers to inject arbitrary web script or HTML via the customerEmailAddress parameter.  Assigned (20051209)  None (candidate not yet proposed)    View

Page 19384 of 20943, showing 5 records out of 104715 total, starting on record 96916, ending on 96920

Actions