CVE List

Id CVE No. Status Description Phase Votes Comments Actions
15364  CVE-2005-4160  Candidate  Directory traversal vulnerability in getdox.php in Torrential 1.2 allows remote attackers to read arbitrary files via "../" sequences in the query string argument.  Assigned (20051211)  None (candidate not yet proposed)    View
80900  CVE-2015-3623  Candidate  XML external entity (XXE) vulnerability in QlikTech Qlikview before 11.20 SR12 allows remote attackers to conduct server-side request forgery (SSRF) attacks and read arbitrary files via crafted XML data in a request to AccessPoint.aspx.  Assigned (20150430)  None (candidate not yet proposed)    View
15620  CVE-2005-4416  Candidate  SQL injection vulnerability in index.php in TML CMS 0.5 allows remote attackers to execute arbitrary SQL commands via the id parameter.  Assigned (20051220)  None (candidate not yet proposed)    View
81156  CVE-2015-3879  Candidate  Media Player Framework in Android before 5.1.1 LMY48T allows attackers to gain privileges via a crafted application, aka internal bug 23223325.  Assigned (20150512)  None (candidate not yet proposed)    View
15876  CVE-2005-4672  Candidate  Cross-site scripting (XSS) vulnerability in image-editor-52/index.php in CityPost Simple Image-Editor 0.52 allows remote attackers to inject arbitrary web script or HTML via the (1) m1, (2) m2, (3) m3, (4) imgsrc, and (5) m4 parameter.  Assigned (20060127)  None (candidate not yet proposed)    View

Page 342 of 20943, showing 5 records out of 104715 total, starting on record 1706, ending on 1710

Actions