CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
15093 | CVE-2005-3889 | Candidate | Gadu-Gadu 7.20 allows remote attackers to cause a denial of service via multiple DCC packets with a code of 6 or 7, which triggers a large number of popup windows to the user and creates a large number of threads. | Assigned (20051129) | None (candidate not yet proposed) | View | |
80629 | CVE-2015-3352 | Candidate | Multiple cross-site request forgery (CSRF) vulnerabilities in the Jammer module before 6.x-1.8 and 7.x-1.x before 7.x-1.4 for Drupal allow remote attackers to hijack the authentication of administrators for requests that delete a setting for (1) hidden form elements or (2) status messages via unspecified vectors, related to "report administration." | Assigned (20150421) | None (candidate not yet proposed) | View | |
15349 | CVE-2005-4145 | Candidate | The MSDE version of Lyris ListManager 5.0 through 8.9b configures the sa account in the database to use a password with a small search space ("lyris" and up to 5 digits, possibly from the process ID), which allows remote attackers to gain access via a brute force attack. | Assigned (20051210) | None (candidate not yet proposed) | View | |
80885 | CVE-2015-3608 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20150430) | None (candidate not yet proposed) | View | |
15605 | CVE-2005-4401 | Candidate | Cross-site scripting (XSS) vulnerability in Lutece 1.2.3 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified search parameters, possibly the query parameter. | Assigned (20051220) | None (candidate not yet proposed) | View |
Page 20078 of 20943, showing 5 records out of 104715 total, starting on record 100386, ending on 100390