CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12796  CVE-2005-1590  Candidate  The Altiris Client Service for Windows (ACLIENT.EXE) 6.0.88 allows local users to disable password protection and access the administrative interface by finding and showing the "Altiris Client Service" hidden window, disabling the password protection, disabling the "Hide client tray icon box" option, then opening the AClient tray icon and using the View Log File option, a different vulnerability than CVE-2004-2070.  Assigned (20050516)  None (candidate not yet proposed)    View
78332  CVE-2015-1055  Candidate  SQL injection vulnerability in the Photo Gallery plugin 1.2.7 for WordPress allows remote attackers to execute arbitrary SQL commands via the order_by parameter in a GalleryBox action to wp-admin/admin-ajax.php.  Assigned (20150116)  None (candidate not yet proposed)    View
13052  CVE-2005-1846  Candidate  Multiple directory traversal vulnerabilities in YaMT before 0.5_2 allow attackers to overwrite arbitrary files via the (1) rename or (2) sort options.  Assigned (20050603)  None (candidate not yet proposed)    View
78588  CVE-2015-1311  Candidate  The Extended Application Services (XS) in SAP HANA allows remote attackers to inject arbitrary ABAP code via unspecified vectors, aka SAP Note 2098906. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.  Assigned (20150122)  None (candidate not yet proposed)    View
13308  CVE-2005-2102  Candidate  The AIM/ICQ module in Gaim before 1.5.0 allows remote attackers to cause a denial of service (application crash) via a filename that contains invalid UTF-8 characters.  Assigned (20050630)  None (candidate not yet proposed)    View

Page 20614 of 20943, showing 5 records out of 104715 total, starting on record 103066, ending on 103070

Actions