CVE List

Id CVE No. Status Description Phase Votes Comments Actions
14831  CVE-2005-3627  Candidate  Stream.cc in Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to modify memory and possibly execute arbitrary code via a DCTDecode stream with (1) a large "number of components" value that is not checked by DCTStream::readBaselineSOF or DCTStream::readProgressiveSOF, (2) a large "Huffman table index" value that is not checked by DCTStream::readHuffmanTables, and (3) certain uses of the scanInfo.numComps value by DCTStream::readScanInfo.  Assigned (20051116)  None (candidate not yet proposed)    View
80367  CVE-2015-3090  Candidate  Adobe Flash Player before 13.0.0.289 and 14.x through 17.x before 17.0.0.188 on Windows and OS X and before 11.2.202.460 on Linux, Adobe AIR before 17.0.0.172, Adobe AIR SDK before 17.0.0.172, and Adobe AIR SDK & Compiler before 17.0.0.172 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-3078, CVE-2015-3089, and CVE-2015-3093.  Assigned (20150409)  None (candidate not yet proposed)    View
15087  CVE-2005-3883  Candidate  CRLF injection vulnerability in the mb_send_mail function in PHP before 5.1.0 might allow remote attackers to inject arbitrary e-mail headers via line feeds (LF) in the "To" address argument.  Assigned (20051129)  None (candidate not yet proposed)    View
80623  CVE-2015-3346  Candidate  SQL injection vulnerability in the WikiWiki module before 6.x-1.2 for Drupal allows remote attackers to execute arbitrary SQL commands via unspecified vectors.  Assigned (20150421)  None (candidate not yet proposed)    View
15343  CVE-2005-4139  Candidate  Multiple SQL injection vulnerabilities in ThWboard before 3 Beta 2.84 allow remote attackers to execute arbitrary SQL commands via the (1) year parameter in calendar.php, (2) user parameter array in v_profile.php, and (3) the userid parameter in misc.php.  Assigned (20051209)  None (candidate not yet proposed)    View

Page 19603 of 20943, showing 5 records out of 104715 total, starting on record 98011, ending on 98015

Actions