CVE List

Id CVE No. Status Description Phase Votes Comments Actions
81133  CVE-2015-3856  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20150512)  None (candidate not yet proposed)    View
15853  CVE-2005-4649  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in Advanced Guestbook 2.2 and 2.3.1 allow remote attackers to inject arbitrary web script or HTML via (1) the entry parameter in index.php and (2) the gb_id parameter in comment.php. NOTE: The index.php/entry vector might be resultant from CVE-2005-1548.  Assigned (20060113)  None (candidate not yet proposed)    View
81389  CVE-2015-4112  Candidate  The Management Console in BlackBerry Enterprise Server (BES) 12 before 12.2 does not properly restrict use of FRAME elements, which makes it easier for remote attackers to conduct clickjacking attacks via a crafted web site, related to a "cross frame scripting" issue.  Assigned (20150528)  None (candidate not yet proposed)    View
16109  CVE-2006-0005  Candidate  Buffer overflow in the plug-in for Microsoft Windows Media Player (WMP) 9 and 10, when used in browsers other than Internet Explorer and set as the default application to handle media files, allows remote attackers to execute arbitrary code via HTML with an EMBED element containing a long src attribute.  Assigned (20051109)  None (candidate not yet proposed)    View
81645  CVE-2015-4368  Candidate  The Commerce Ogone module 7.x-1.x before 7.x-1.5 for Drupal allows remote attackers to complete the checkout for an order without paying via unspecified vectors.  Assigned (20150605)  None (candidate not yet proposed)    View

Page 19444 of 20943, showing 5 records out of 104715 total, starting on record 97216, ending on 97220

Actions