CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
15364 | CVE-2005-4160 | Candidate | Directory traversal vulnerability in getdox.php in Torrential 1.2 allows remote attackers to read arbitrary files via "../" sequences in the query string argument. | Assigned (20051211) | None (candidate not yet proposed) | View | |
80900 | CVE-2015-3623 | Candidate | XML external entity (XXE) vulnerability in QlikTech Qlikview before 11.20 SR12 allows remote attackers to conduct server-side request forgery (SSRF) attacks and read arbitrary files via crafted XML data in a request to AccessPoint.aspx. | Assigned (20150430) | None (candidate not yet proposed) | View | |
15620 | CVE-2005-4416 | Candidate | SQL injection vulnerability in index.php in TML CMS 0.5 allows remote attackers to execute arbitrary SQL commands via the id parameter. | Assigned (20051220) | None (candidate not yet proposed) | View | |
81156 | CVE-2015-3879 | Candidate | Media Player Framework in Android before 5.1.1 LMY48T allows attackers to gain privileges via a crafted application, aka internal bug 23223325. | Assigned (20150512) | None (candidate not yet proposed) | View | |
15876 | CVE-2005-4672 | Candidate | Cross-site scripting (XSS) vulnerability in image-editor-52/index.php in CityPost Simple Image-Editor 0.52 allows remote attackers to inject arbitrary web script or HTML via the (1) m1, (2) m2, (3) m3, (4) imgsrc, and (5) m4 parameter. | Assigned (20060127) | None (candidate not yet proposed) | View |
Page 342 of 20943, showing 5 records out of 104715 total, starting on record 1706, ending on 1710