CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
80643 | CVE-2015-3366 | Candidate | Cross-site request forgery (CSRF) vulnerability in the Alfresco module before 6.x-1.3 for Drupal allows remote attackers to hijack the authentication of arbitrary users for requests that delete an alfresco node via unspecified vectors. | Assigned (20150421) | None (candidate not yet proposed) | View | |
15363 | CVE-2005-4159 | Candidate | ** DISPUTED ** NOTE: this issue has been disputed by the vendor and third parties. SQL injection vulnerability in Memberlist.php in Simple Machines Forum (SMF) 1.1 rc1 and earlier allows remote attackers to execute arbitrary SQL commands via the start parameter. NOTE: the vendor says that since only one character can be modified, there is no SQL injection. Thus this might be an "invalid SQL syntax error." Multiple followups support the vendor. | Assigned (20051211) | None (candidate not yet proposed) | View | |
80899 | CVE-2015-3622 | Candidate | The _asn1_extract_der_octet function in lib/decoding.c in GNU Libtasn1 before 4.5 allows remote attackers to cause a denial of service (out-of-bounds heap read) via a crafted certificate. | Assigned (20150430) | None (candidate not yet proposed) | View | |
15619 | CVE-2005-4415 | Candidate | Cross-site scripting (XSS) vulnerability in index.php in TML CMS 0.5 allows remote attackers to inject arbitrary web script or HTML via the form parameter. | Assigned (20051220) | None (candidate not yet proposed) | View | |
81155 | CVE-2015-3878 | Candidate | Media Projection in Android 5.x before 5.1.1 LMY48T and 6.0 before 2015-10-01 allows attackers to bypass an intended screen-recording warning feature and obtain sensitive screen-snapshot information via a crafted application that references a long application name, aka internal bug 23345192. | Assigned (20150512) | None (candidate not yet proposed) | View |
Page 266 of 20943, showing 5 records out of 104715 total, starting on record 1326, ending on 1330