CVE List

Id CVE No. Status Description Phase Votes Comments Actions
14587  CVE-2005-3381  Candidate  Multiple interpretation error in Ukrainian National Antivirus (UNA) 1.83.2.16 with kernel 265 allows remote attackers to bypass virus scanning via a file such as BAT, HTML, and EML with an "MZ" magic byte sequence which is normally associated with EXE, which causes the file to be treated as a safe type that could still be executed as a dangerous file type by applications on the end system, as demonstrated by a "triple headed" program that contains EXE, EML, and HTML content, aka the "magic byte bug."  Assigned (20051029)  None (candidate not yet proposed)    View
80123  CVE-2015-2846  Candidate  BitTorrent Sync allows remote attackers to execute arbitrary commands via a crafted btsync: link.  Assigned (20150403)  None (candidate not yet proposed)    View
14843  CVE-2005-3639  Candidate  PHP file inclusion vulnerability in the osTicket module in Help Center Live before 2.0.3 allows remote attackers to access or include arbitrary files via the file parameter, possibly due to a directory traversal vulnerability.  Assigned (20051116)  None (candidate not yet proposed)    View
80379  CVE-2015-3102  Candidate  Adobe Flash Player before 13.0.0.292 and 14.x through 18.x before 18.0.0.160 on Windows and OS X and before 11.2.202.466 on Linux, Adobe AIR before 18.0.0.144 on Windows and before 18.0.0.143 on OS X and Android, Adobe AIR SDK before 18.0.0.144 on Windows and before 18.0.0.143 on OS X, and Adobe AIR SDK & Compiler before 18.0.0.144 on Windows and before 18.0.0.143 on OS X allow remote attackers to bypass the Same Origin Policy via unspecified vectors, a different vulnerability than CVE-2015-3098 and CVE-2015-3099.  Assigned (20150409)  None (candidate not yet proposed)    View
15099  CVE-2005-3895  Candidate  Open Ticket Request System (OTRS) 1.0.0 through 1.3.2 and 2.0.0 through 2.0.3, when AttachmentDownloadType is set to inline, renders text/html e-mail attachments as HTML in the browser when the queue moderator attempts to download the attachment, which allows remote attackers to execute arbitrary web script or HTML. NOTE: this particular issue is referred to as XSS by some sources.  Assigned (20051129)  None (candidate not yet proposed)    View

Page 20540 of 20943, showing 5 records out of 104715 total, starting on record 102696, ending on 102700

Actions