CVE List

Id CVE No. Status Description Phase Votes Comments Actions
14857  CVE-2005-3653  Candidate  Heap-based buffer overflow in the iGateway service for various Computer Associates (CA) iTechnology products, in iTechnology iGateway before 4.0.051230, allows remote attackers to execute arbitrary code via an HTTP request with a negative Content-Length field.  Assigned (20051118)  None (candidate not yet proposed)    View
80393  CVE-2015-3116  Candidate  Adobe Flash Player before 13.0.0.302 and 14.x through 18.x before 18.0.0.203 on Windows and OS X and before 11.2.202.481 on Linux, Adobe AIR before 18.0.0.180, Adobe AIR SDK before 18.0.0.180, and Adobe AIR SDK & Compiler before 18.0.0.180 allow remote attackers to bypass the Same Origin Policy via unspecified vectors, a different vulnerability than CVE-2014-0578, CVE-2015-3115, CVE-2015-3125, and CVE-2015-5116.  Assigned (20150409)  None (candidate not yet proposed)    View
15113  CVE-2005-3909  Candidate  SQL injection vulnerability in merchants/index.php in Post Affiliate Pro 2.0.4 and earlier allows remote attackers to execute arbitrary SQL commands via the sortorder parameter.  Assigned (20051130)  None (candidate not yet proposed)    View
80649  CVE-2015-3372  Candidate  Cross-site scripting (XSS) vulnerability in the Node Invite module before 6.x-2.5 for Drupal allows remote authenticated users to inject arbitrary web script or HTML via a node title.  Assigned (20150421)  None (candidate not yet proposed)    View
15369  CVE-2005-4165  Candidate  Multiple SQL injection vulnerabilities in ASP-DEV ASP Resources Forum allow remote attackers to execute arbitrary SQL commands via the (1) forum_id parameter to forum.asp, (2) unspecified parameters to register.asp, and (3) the "Search For" field in search.asp.  Assigned (20051211)  None (candidate not yet proposed)    View

Page 748 of 20943, showing 5 records out of 104715 total, starting on record 3736, ending on 3740

Actions