CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12791  CVE-2005-1585  Candidate  Multiple SQL injection vulnerabilities in Quick.Forum 2.1.6 allow remote attackers to execute arbitrary SQL commands via the (1) iCategory or (2) page parameter to index.php, or (3) iCategory parameter in the query string to the forum directory.  Assigned (20050514)  None (candidate not yet proposed)    View
78327  CVE-2015-1050  Candidate  Cross-site scripting (XSS) vulnerability in F5 BIG-IP Application Security Manager (ASM) before 11.6 allows remote attackers to inject arbitrary web script or HTML via the Response Body field when creating a new user account.  Assigned (20150115)  None (candidate not yet proposed)    View
13047  CVE-2005-1841  Candidate  The control for Adobe Reader 5.0.9 and 5.0.10 on Linux, Solaris, HP-UX, and AIX creates temporary files with the permissions as specified in a user"s umask, which could allow local users to read PDF documents of that user if the umask allows it.  Assigned (20050603)  None (candidate not yet proposed)    View
78583  CVE-2015-1306  Candidate  The newsletter posting area in the web interface in Sympa 6.0.x before 6.0.10 and 6.1.x before 6.1.24 allows remote attackers to read arbitrary files via unspecified vectors.  Assigned (20150122)  None (candidate not yet proposed)    View
13303  CVE-2005-2097  Candidate  xpdf and kpdf do not properly validate the "loca" table in PDF files, which allows local users to cause a denial of service (disk consumption and hang) via a PDF file with a "broken" loca table, which causes a large temporary file to be created when xpdf attempts to reconstruct the information.  Assigned (20050630)  None (candidate not yet proposed)    View

Page 20240 of 20943, showing 5 records out of 104715 total, starting on record 101196, ending on 101200

Actions