CVE List

Id CVE No. Status Description Phase Votes Comments Actions
81137  CVE-2015-3860  Candidate  packages/Keyguard/res/layout/keyguard_password_view.xml in Lockscreen in Android 5.x before 5.1.1 LMY48M does not restrict the number of characters in the passwordEntry input field, which allows physically proximate attackers to bypass intended access restrictions via a long password that triggers a SystemUI crash, aka internal bug 22214934.  Assigned (20150512)  None (candidate not yet proposed)    View
15857  CVE-2005-4653  Candidate  Unspecified vulnerability in ss.php in AL-Caricatier 2.5 and earlier allows remote attackers to bypass login authentication by requesting view_caricatier.php, and then requesting any file in the admin directory with a cookie_username=admin argument.  Assigned (20060116)  None (candidate not yet proposed)    View
81393  CVE-2015-4116  Candidate  Use-after-free vulnerability in the spl_ptr_heap_insert function in ext/spl/spl_heap.c in PHP before 5.5.27 and 5.6.x before 5.6.11 allows remote attackers to execute arbitrary code by triggering a failed SplMinHeap::compare operation.  Assigned (20150528)  None (candidate not yet proposed)    View
16113  CVE-2006-0009  Candidate  Buffer overflow in Microsoft Office 2000 SP3, XP SP3, and other versions and packages, allows user-assisted attackers to execute arbitrary code via a routing slip that is longer than specified by the provided length field, as exploited by malware such as TROJ_MDROPPER.BH and Trojan.PPDropper.E in attacks against PowerPoint.  Assigned (20051109)  None (candidate not yet proposed)    View
81649  CVE-2015-4372  Candidate  Cross-site scripting (XSS) vulnerability in the Image Title module before 7.x-1.1 for Drupal allows remote authenticated users with certain permissions to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20150605)  None (candidate not yet proposed)    View

Page 19773 of 20943, showing 5 records out of 104715 total, starting on record 98861, ending on 98865

Actions