CVE List

Id CVE No. Status Description Phase Votes Comments Actions
81150  CVE-2015-3873  Candidate  libstagefright in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bugs 23016072, 23248776, 23247055, 22845824, 22008959, 21814993, 21048776, 20718524, 20674674, 22388975, 20674086, 21443020, and 22077698, a different vulnerability than CVE-2015-7716.  Assigned (20150512)  None (candidate not yet proposed)    View
15870  CVE-2005-4666  Candidate  Cross-site scripting (XSS) vulnerability in PHlyMail before 3.3 Beta1 allows remote attackers to inject arbitrary Javascript via unknown attack vectors.  Assigned (20060119)  None (candidate not yet proposed)    View
81406  CVE-2015-4129  Candidate  SQL injection vulnerability in Subrion CMS before 3.3.3 allows remote authenticated users to execute arbitrary SQL commands via modified serialized data in a salt cookie.  Assigned (20150528)  None (candidate not yet proposed)    View
16126  CVE-2006-0022  Candidate  Unspecified vulnerability in Microsoft PowerPoint in Microsoft Office 2000 SP3, Office XP SP3, Office 2003 SP1 and SP2, Office 2004 for Mac, and v. X for Mac allows user-assisted attackers to execute arbitrary code via a PowerPoint document with a malformed record, which triggers memory corruption.  Assigned (20051130)  None (candidate not yet proposed)    View
81662  CVE-2015-4385  Candidate  Cross-site scripting (XSS) vulnerability in unspecified administration pages in the Imagefield Info module 7.x-1.x before 7.x-1.2 for Drupal allows remote authenticated users with the "Administer image styles" permission to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20150605)  None (candidate not yet proposed)    View

Page 20773 of 20943, showing 5 records out of 104715 total, starting on record 103861, ending on 103865

Actions