CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
78080 | CVE-2015-0817 | Candidate | The asm.js implementation in Mozilla Firefox before 36.0.3, Firefox ESR 31.x before 31.5.2, and SeaMonkey before 2.33.1 does not properly determine the cases in which bounds checking may be safely skipped during JIT compilation and heap access, which allows remote attackers to read or write to unintended memory locations, and consequently execute arbitrary code, via crafted JavaScript. | Assigned (20150107) | None (candidate not yet proposed) | View | |
12800 | CVE-2005-1594 | Candidate | SQL injection vulnerability in catalog.php for CodeThat ShoppingCart 1.3.1 allows remote attackers to execute arbitrary SQL commands via the id parameter. | Assigned (20050516) | None (candidate not yet proposed) | View | |
78336 | CVE-2015-1059 | Candidate | Unrestricted file upload vulnerability in admin/files/add in AdaptCMS 3.0.3 allows remote authenticated users to execute arbitrary PHP code by uploading a file with a PHP extension, then accessing it via a direct request to the file in /app/webroot/uploads. | Assigned (20150116) | None (candidate not yet proposed) | View | |
13056 | CVE-2005-1850 | Candidate | Certain contributed scripts for ekg Gadu Gadu client 1.5 and earlier create temporary files insecurely, with unknown impact and attack vectors, a different vulnerability than CVE-2005-1916. | Assigned (20050606) | None (candidate not yet proposed) | View | |
78592 | CVE-2015-1315 | Candidate | Buffer overflow in the charset_to_intern function in unix/unix.c in Info-Zip UnZip 6.10b allows remote attackers to execute arbitrary code via a crafted string, as demonstrated by converting a string from CP866 to UTF-8. | Assigned (20150122) | None (candidate not yet proposed) | View |
Page 629 of 20943, showing 5 records out of 104715 total, starting on record 3141, ending on 3145