CVE List

Id CVE No. Status Description Phase Votes Comments Actions
81141  CVE-2015-3864  Candidate  Integer underflow in the MPEG4Extractor::parseChunk function in MPEG4Extractor.cpp in libstagefright in mediaserver in Android before 5.1.1 LMY48M allows remote attackers to execute arbitrary code via crafted MPEG-4 data, aka internal bug 23034759. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-3824.  Assigned (20150512)  None (candidate not yet proposed)    View
15861  CVE-2005-4657  Candidate  Ocean12 Calendar Manager Pro 1.01 allows remote attackers to bypass authentication and obtain sensitive information via a direct request to /admin/view.asp. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.  Assigned (20060116)  None (candidate not yet proposed)    View
81397  CVE-2015-4120  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20150528)  None (candidate not yet proposed)    View
16117  CVE-2006-0013  Candidate  Buffer overflow in the Web Client service (WebClnt.dll) for Microsoft Windows XP SP1 and SP2, and Server 2003 up to SP1, allows remote authenticated users or Guests to execute arbitrary code via crafted RPC requests, a different vulnerability than CVE-2005-1207.  Assigned (20051109)  None (candidate not yet proposed)    View
81653  CVE-2015-4376  Candidate  Cross-site scripting (XSS) vulnerability in the Profile2 Privacy module 7.x-1.x before 7.x-1.5 for Drupal allows remote authenticated users with the "Administer Profile2 Privacy Levels" permission to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20150605)  None (candidate not yet proposed)    View

Page 20079 of 20943, showing 5 records out of 104715 total, starting on record 100391, ending on 100395

Actions