CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
14857 | CVE-2005-3653 | Candidate | Heap-based buffer overflow in the iGateway service for various Computer Associates (CA) iTechnology products, in iTechnology iGateway before 4.0.051230, allows remote attackers to execute arbitrary code via an HTTP request with a negative Content-Length field. | Assigned (20051118) | None (candidate not yet proposed) | View | |
80393 | CVE-2015-3116 | Candidate | Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allow remote attackers to bypass the Same Origin Policy via unspecified vectors, a different vulnerability than CVE-2014-0578, CVE-2015-3115, CVE-2015-3125, and CVE-2015-5116. | Assigned (20150409) | None (candidate not yet proposed) | View | |
15113 | CVE-2005-3909 | Candidate | SQL injection vulnerability in merchants/index.php in Post Affiliate Pro 2.0.4 and earlier allows remote attackers to execute arbitrary SQL commands via the sortorder parameter. | Assigned (20051130) | None (candidate not yet proposed) | View | |
80649 | CVE-2015-3372 | Candidate | Cross-site scripting (XSS) vulnerability in the Node Invite module before 6.x-2.5 for Drupal allows remote authenticated users to inject arbitrary web script or HTML via a node title. | Assigned (20150421) | None (candidate not yet proposed) | View | |
15369 | CVE-2005-4165 | Candidate | Multiple SQL injection vulnerabilities in ASP-DEV ASP Resources Forum allow remote attackers to execute arbitrary SQL commands via the (1) forum_id parameter to forum.asp, (2) unspecified parameters to register.asp, and (3) the "Search For" field in search.asp. | Assigned (20051211) | None (candidate not yet proposed) | View |
Page 748 of 20943, showing 5 records out of 104715 total, starting on record 3736, ending on 3740