CVE List

Id CVE No. Status Description Phase Votes Comments Actions
80634  CVE-2015-3357  Candidate  Cross-site scripting (XSS) vulnerability in the Wishlist module before 6.x-2.7 and 7.x-2.x before 7.x-2.7 for Drupal allows remote authenticated users with the "access wishlists" permission to inject arbitrary web script or HTML via unspecified vectors, which are not properly handled in a log message.  Assigned (20150421)  None (candidate not yet proposed)    View
15354  CVE-2005-4150  Candidate  Cross-site scripting (XSS) vulnerability in the portal login page in Computer Associates CleverPath 4.7 allows remote attackers to execute Javascript via unknown vectors.  Assigned (20051210)  None (candidate not yet proposed)    View
80890  CVE-2015-3613  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20150430)  None (candidate not yet proposed)    View
15610  CVE-2005-4406  Candidate  SQL injection vulnerability in index.cfm in Mercury CMS 4.0 and earlier allows remote attackers to execute arbitrary SQL commands via the page parameter.  Assigned (20051220)  None (candidate not yet proposed)    View
81146  CVE-2015-3869  Candidate  libstagefright in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 23036083.  Assigned (20150512)  None (candidate not yet proposed)    View

Page 20464 of 20943, showing 5 records out of 104715 total, starting on record 102316, ending on 102320

Actions