CVE List

Id CVE No. Status Description Phase Votes Comments Actions
14850  CVE-2005-3646  Candidate  Multiple SQL injection vulnerabilities in lib-sessions.inc.php in phpAdsNew and phpPgAds 2.0.6 and possibly earlier versions allow remote attackers to execute arbitrary SQL commands via the sessionID parameter in (1) logout.php and (2) index.php.  Assigned (20051117)  None (candidate not yet proposed)    View
80386  CVE-2015-3109  Candidate  Adobe Photoshop CC before 16.0 (aka 2015.0.0) allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors.  Assigned (20150409)  None (candidate not yet proposed)    View
15106  CVE-2005-3902  Candidate  Cross-site scripting (XSS) vulnerability in gui/errordocs/index.php in Virtual Hosting Control System (VHCS) 2.2.0 through 2.4.6.2 allows remote attackers to inject arbitrary web script or HTML via query strings that are included in an error message, as demonstrated using a parameter containing script.  Assigned (20051129)  None (candidate not yet proposed)    View
80642  CVE-2015-3365  Candidate  Cross-site scripting (XSS) vulnerability in the nodeauthor module for Drupal allows remote authenticated users to inject arbitrary web script or HTML via a Profile2 field in a provided block.  Assigned (20150421)  None (candidate not yet proposed)    View
15362  CVE-2005-4158  Candidate  Sudo before 1.6.8 p12, when the Perl taint flag is off, does not clear the (1) PERLLIB, (2) PERL5LIB, and (3) PERL5OPT environment variables, which allows limited local users to cause a Perl script to include and execute arbitrary library files that have the same name as library files that are included by the script.  Assigned (20051211)  None (candidate not yet proposed)    View

Page 792 of 20943, showing 5 records out of 104715 total, starting on record 3956, ending on 3960

Actions