CVE List

Id CVE No. Status Description Phase Votes Comments Actions
79096  CVE-2015-1819  Candidate  The xmlreader in libxml allows remote attackers to cause a denial of service (memory consumption) via crafted XML data, related to an XML Entity Expansion (XEE) attack.  Assigned (20150217)  None (candidate not yet proposed)    View
13816  CVE-2005-2610  Candidate  Cross-site scripting (XSS) vulnerability in index.php in VegaDNS 0.8.1, 0.9.8, and possibly other versions, allows remote attackers to inject arbitrary web script or HTML via the message parameter.  Assigned (20050817)  None (candidate not yet proposed)    View
79352  CVE-2015-2075  Candidate  SAP BusinessObjects Edge 4.0 allows remote attackers to delete audit events from the auditee queue via a clearData CORBA operation, aka SAP Note 2011396.  Assigned (20150224)  None (candidate not yet proposed)    View
14072  CVE-2005-2866  Candidate  Mercora IMRadio 4.0.0.0 stores usernames and passwords in plaintext in the MercoraClientProfiles registry key, which allows local users to gain privileges.  Assigned (20050908)  None (candidate not yet proposed)    View
79608  CVE-2015-2331  Candidate  Integer overflow in the _zip_cdir_new function in zip_dirent.c in libzip 0.11.2 and earlier, as used in the ZIP extension in PHP before 5.4.39, 5.5.x before 5.5.23, and 5.6.x before 5.6.7 and other products, allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a ZIP archive that contains many entries, leading to a heap-based buffer overflow.  Assigned (20150318)  None (candidate not yet proposed)    View

Page 20322 of 20943, showing 5 records out of 104715 total, starting on record 101606, ending on 101610

Actions