CVE List

Id CVE No. Status Description Phase Votes Comments Actions
13833  CVE-2005-2627  Candidate  Multiple integer underflows in Kismet before 2005-08-R1 allow remote attackers to execute arbitrary code via (1) kernel headers in a pcap file or (2) data frame dissection, which leads to heap-based buffer overflows.  Assigned (20050819)  None (candidate not yet proposed)    View
79369  CVE-2015-2092  Candidate  The AnnotationX.AnnList.1 ActiveX control in Agilent Technologies Feature Extraction allows remote attackers to execute arbitrary code via a crafted object parameter in the Insert function, related to "Index Out-Of-Bounds."  Assigned (20150226)  None (candidate not yet proposed)    View
14089  CVE-2005-2883  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-2855. Reason: This candidate is a duplicate of CVE-2005-2855. Notes: All CVE users should reference CVE-2005-2855 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.  Assigned (20050914)  None (candidate not yet proposed)    View
79625  CVE-2015-2348  Candidate  The move_uploaded_file implementation in ext/standard/basic_functions.c in PHP before 5.4.39, 5.5.x before 5.5.23, and 5.6.x before 5.6.7 truncates a pathname upon encountering a x00 character, which allows remote attackers to bypass intended extension restrictions and create files with unexpected names via a crafted second argument. NOTE: this vulnerability exists because of an incomplete fix for CVE-2006-7243.  Assigned (20150319)  None (candidate not yet proposed)    View
14345  CVE-2005-3139  Candidate  Bugzilla 2.19.1 through 2.20rc2 and 2.21, with user matching turned on in substring mode, allows attackers to list all users whose names match an arbitrary substring, even when the usevisibilitygroups parameter is set.  Assigned (20051005)  None (candidate not yet proposed)    View

Page 749 of 20943, showing 5 records out of 104715 total, starting on record 3741, ending on 3745

Actions