CVE List

Id CVE No. Status Description Phase Votes Comments Actions
15352  CVE-2005-4148  Candidate  Lyris ListManager 8.5, and possibly other versions before 8.8, includes sensitive information in the env hidden variable, which allows remote attackers to obtain information such as the installation path by requesting a non-existent page and reading the env variable from the resulting error message page.  Assigned (20051210)  None (candidate not yet proposed)    View
80888  CVE-2015-3611  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20150430)  None (candidate not yet proposed)    View
15608  CVE-2005-4404  Candidate  SQL injection vulnerability in default.asp in Media2 CMS Shop 18.x allows remote attackers to execute arbitrary SQL commands via the item parameter. NOTE: the provenance of this issue is unknown; the details were obtained solely from third party sources.  Assigned (20051220)  None (candidate not yet proposed)    View
81144  CVE-2015-3867  Candidate  libstagefright in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 23213430.  Assigned (20150512)  None (candidate not yet proposed)    View
15864  CVE-2005-4660  Candidate  Race condition in IPCop (aka IPCop Firewall) before 1.4.10 might allow local users to overwrite system configuration files and gain privileges by replacing a backup archive during the time window when the archive is owned by "nobody" but not yet encrypted, then executing ipcoprscfg to restore from this backup.  Assigned (20060116)  None (candidate not yet proposed)    View

Page 20310 of 20943, showing 5 records out of 104715 total, starting on record 101546, ending on 101550

Actions