CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
14828 | CVE-2005-3624 | Candidate | The CCITTFaxStream::CCITTFaxStream function in Stream.cc for xpdf, gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others allows attackers to corrupt the heap via negative or large integers in a CCITTFaxDecode stream, which lead to integer overflows and integer underflows. | Assigned (20051116) | None (candidate not yet proposed) | View | |
80364 | CVE-2015-3087 | Candidate | Integer overflow in Adobe Flash Player before 13.0.0.289 and 14.x through 17.x before 17.0.0.188 on Windows and OS X and before 11.2.202.460 on Linux, Adobe AIR before 17.0.0.172, Adobe AIR SDK before 17.0.0.172, and Adobe AIR SDK & Compiler before 17.0.0.172 allows attackers to execute arbitrary code via unspecified vectors. | Assigned (20150409) | None (candidate not yet proposed) | View | |
15084 | CVE-2005-3880 | Candidate | Multiple SQL injection vulnerabilities in Omnistar KBase 4.0 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) article_id parameter in users/comments.php, (2) category_id and (3) id parameters in users/kb.php. | Assigned (20051129) | None (candidate not yet proposed) | View | |
80620 | CVE-2015-3343 | Candidate | Cross-site request forgery (CSRF) vulnerability in the OPAC module before 7.x-2.3 for Drupal allows remote attackers to hijack the authentication of unspecified victims for requests that remove a mapping via unknown vectors. | Assigned (20150421) | None (candidate not yet proposed) | View | |
15340 | CVE-2005-4136 | Candidate | Cross-site scripting (XSS) vulnerability in login.php in DRZES HMS 3.2 allows remote attackers to inject arbitrary web script or HTML via the customerEmailAddress parameter. | Assigned (20051209) | None (candidate not yet proposed) | View |
Page 19384 of 20943, showing 5 records out of 104715 total, starting on record 96916, ending on 96920