CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
77815 | CVE-2015-0552 | Candidate | Directory traversal vulnerability in the gcab_folder_extract function in libgcab/gcab-folder.c in gcab 0.4 allows remote attackers to write to arbitrary files via crafted path in a CAB file, as demonstrated by " mpmoo." | Assigned (20150105) | None (candidate not yet proposed) | View | |
12535 | CVE-2005-1329 | Candidate | owOfflineCC.asp in OneWorldStore allows remote attackers to obtain sensitive information by modifying the idOrder parameter. | Assigned (20050427) | None (candidate not yet proposed) | View | |
78071 | CVE-2015-0808 | Candidate | The webrtc::VPMContentAnalysis::Release function in the WebRTC implementation in Mozilla Firefox before 37.0 uses incompatible approaches to the deallocation of memory for simple-type arrays, which might allow remote attackers to cause a denial of service (memory corruption) via unspecified vectors. | Assigned (20150107) | None (candidate not yet proposed) | View | |
12791 | CVE-2005-1585 | Candidate | Multiple SQL injection vulnerabilities in Quick.Forum 2.1.6 allow remote attackers to execute arbitrary SQL commands via the (1) iCategory or (2) page parameter to index.php, or (3) iCategory parameter in the query string to the forum directory. | Assigned (20050514) | None (candidate not yet proposed) | View | |
78327 | CVE-2015-1050 | Candidate | Cross-site scripting (XSS) vulnerability in F5 BIG-IP Application Security Manager (ASM) before 11.6 allows remote attackers to inject arbitrary web script or HTML via the Response Body field when creating a new user account. | Assigned (20150115) | None (candidate not yet proposed) | View |
Page 20228 of 20943, showing 5 records out of 104715 total, starting on record 101136, ending on 101140