CVE List

Id CVE No. Status Description Phase Votes Comments Actions
77564  CVE-2015-0301  Candidate  Adobe Flash Player before 13.0.0.260 and 14.x through 16.x before 16.0.0.257 on Windows and OS X and before 11.2.202.429 on Linux, Adobe AIR before 16.0.0.245 on Windows and OS X and before 16.0.0.272 on Android, Adobe AIR SDK before 16.0.0.272, and Adobe AIR SDK & Compiler before 16.0.0.272 do not properly validate files, which has unspecified impact and attack vectors.  Assigned (20141201)  None (candidate not yet proposed)    View
12284  CVE-2005-1078  Candidate  XAMPP 1.4.x has multiple default or null passwords, which allows attackers to gain privileges.  Assigned (20050412)  None (candidate not yet proposed)    View
77820  CVE-2015-0557  Candidate  Open-source ARJ archiver 3.10.22 does not properly remove leading slashes from paths, which allows remote attackers to conduct absolute path traversal attacks and write to arbitrary files via multiple leading slashes in a path in an ARJ archive.  Assigned (20150105)  None (candidate not yet proposed)    View
12540  CVE-2005-1334  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-1579. Reason: This candidate is a duplicate of CVE-2005-1579. Notes: All CVE users should reference CVE-2005-1579 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.  Assigned (20050427)  None (candidate not yet proposed)    View
78076  CVE-2015-0813  Candidate  Use-after-free vulnerability in the AppendElements function in Mozilla Firefox before 37.0, Firefox ESR 31.x before 31.6, and Thunderbird before 31.6 on Linux, when the Fluendo MP3 plugin for GStreamer is used, allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via a crafted MP3 file.  Assigned (20150107)  None (candidate not yet proposed)    View

Page 20613 of 20943, showing 5 records out of 104715 total, starting on record 103061, ending on 103065

Actions