CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
81133 | CVE-2015-3856 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20150512) | None (candidate not yet proposed) | View | |
15853 | CVE-2005-4649 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in Advanced Guestbook 2.2 and 2.3.1 allow remote attackers to inject arbitrary web script or HTML via (1) the entry parameter in index.php and (2) the gb_id parameter in comment.php. NOTE: The index.php/entry vector might be resultant from CVE-2005-1548. | Assigned (20060113) | None (candidate not yet proposed) | View | |
81389 | CVE-2015-4112 | Candidate | The Management Console in BlackBerry Enterprise Server (BES) 12 before 12.2 does not properly restrict use of FRAME elements, which makes it easier for remote attackers to conduct clickjacking attacks via a crafted web site, related to a "cross frame scripting" issue. | Assigned (20150528) | None (candidate not yet proposed) | View | |
16109 | CVE-2006-0005 | Candidate | Buffer overflow in the plug-in for Microsoft Windows Media Player (WMP) 9 and 10, when used in browsers other than Internet Explorer and set as the default application to handle media files, allows remote attackers to execute arbitrary code via HTML with an EMBED element containing a long src attribute. | Assigned (20051109) | None (candidate not yet proposed) | View | |
81645 | CVE-2015-4368 | Candidate | The Commerce Ogone module 7.x-1.x before 7.x-1.5 for Drupal allows remote attackers to complete the checkout for an order without paying via unspecified vectors. | Assigned (20150605) | None (candidate not yet proposed) | View |
Page 19444 of 20943, showing 5 records out of 104715 total, starting on record 97216, ending on 97220