CVE List

Id CVE No. Status Description Phase Votes Comments Actions
78599  CVE-2015-1322  Candidate  Directory traversal vulnerability in the Ubuntu network-manager package for Ubuntu (vivid) before 0.9.10.0-4ubuntu15.1, Ubuntu 14.10 before 0.9.8.8-0ubuntu28.1, and Ubuntu 14.04 LTS before 0.9.8.8-0ubuntu7.1 allows local users to change the modem device configuration or read arbitrary files via a .. (dot dot) in the file name in a request to read modem device contexts (com.canonical.NMOfono.ReadImsiContexts).  Assigned (20150122)  None (candidate not yet proposed)    View
13319  CVE-2005-2113  Candidate  SQL injection vulnerability in the loginUser function in the XMLRPC server in XOOPS 2.0.11 and earlier allows remote attackers to execute arbitrary SQL commands and bypass authentication via crafted values in an XML file, as demonstrated using the blogger.getPost method.  Assigned (20050701)  None (candidate not yet proposed)    View
78855  CVE-2015-1578  Candidate  Multiple open redirect vulnerabilities in u5CMS before 3.9.4 allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the (1) pidvesa cookie to u5admin/pidvesa.php or (2) uri parameter to u5admin/meta2.php.  Assigned (20150211)  None (candidate not yet proposed)    View
13575  CVE-2005-2369  Candidate  Multiple integer signedness errors in libgadu, as used in ekg before 1.6rc2 and other packages, may allow remote attackers to cause a denial of service or execute arbitrary code.  Assigned (20050726)  None (candidate not yet proposed)    View
79111  CVE-2015-1834  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20150217)  None (candidate not yet proposed)    View

Page 584 of 20943, showing 5 records out of 104715 total, starting on record 2916, ending on 2920

Actions