CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
78851 | CVE-2015-1574 | Candidate | The Google Email application 4.2.2.0200 for Android allows remote attackers to cause a denial of service (persistent application crash) via a "Content-Disposition: ;" header in an e-mail message. | Assigned (20150211) | None (candidate not yet proposed) | View | |
13571 | CVE-2005-2365 | Candidate | Unknown vulnerability in the SMB dissector in Ethereal 0.9.0 through 0.10.11 allows remote attackers to cause a buffer overflow or a denial of service (memory consumption) via unknown attack vectors. | Assigned (20050726) | None (candidate not yet proposed) | View | |
79107 | CVE-2015-1830 | Candidate | Directory traversal vulnerability in the fileserver upload/download functionality for blob messages in Apache ActiveMQ 5.x before 5.11.2 for Windows allows remote attackers to create JSP files in arbitrary directories via unspecified vectors. | Assigned (20150217) | None (candidate not yet proposed) | View | |
13827 | CVE-2005-2621 | Candidate | index.php in ECW-Shop 6.0.2 allows remote attackers to obtain sensitive information via the (1) min or (2) max parameter with a """ (single quote), which reveals the path in an error message, possibly due to a SQL injection vulnerability. | Assigned (20050819) | None (candidate not yet proposed) | View | |
79363 | CVE-2015-2086 | Candidate | Cross-site scripting (XSS) vulnerability in the live preview in the Panopoly Magic module before 7.x-1.17 for Drupal allows remote authenticated users to inject arbitrary web script or HTML via a pane title. | Assigned (20150226) | None (candidate not yet proposed) | View |
Page 259 of 20943, showing 5 records out of 104715 total, starting on record 1291, ending on 1295