CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
80640 | CVE-2015-3363 | Candidate | Cross-site request forgery (CSRF) vulnerability in the Contact Form Fields module before 6.x-2.3 for Drupal allows remote attackers to hijack the authentication of administrators for requests that delete fields via unspecified vectors. | Assigned (20150421) | None (candidate not yet proposed) | View | |
15360 | CVE-2005-4156 | Candidate | Unspecified vulnerability in Mambo 4.5 (1.0.0) through 4.5 (1.0.9), with magic_quotes_gpc disabled, allows remote attackers to read arbitrary files and possibly cause a denial of service via a query string that ends with a NULL character. | Assigned (20051211) | None (candidate not yet proposed) | View | |
80896 | CVE-2015-3619 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20150430) | None (candidate not yet proposed) | View | |
15616 | CVE-2005-4412 | Candidate | Citrix Program Neighborhood client before 9.150 caches the user password in plaintext in the GUI while asterisks are used to visually obfuscate the password, which allows attackers with access to the session to obtain the password by using a tool to directly access the field. | Assigned (20051220) | None (candidate not yet proposed) | View | |
81152 | CVE-2015-3875 | Candidate | libutils in Android before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted audio file, aka internal bug 22952485. | Assigned (20150512) | None (candidate not yet proposed) | View |
Page 633 of 20943, showing 5 records out of 104715 total, starting on record 3161, ending on 3165