CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
80387 | CVE-2015-3110 | Candidate | Integer overflow in Adobe Photoshop CC before 16.0 (aka 2015.0.0) and Adobe Bridge CC before 6.11 allows attackers to execute arbitrary code via unspecified vectors. | Assigned (20150409) | None (candidate not yet proposed) | View | |
15107 | CVE-2005-3903 | Candidate | Buffer overflow in uidadmin in SCO Unixware 7.1.3 and 7.1.4 allows local users to execute arbitrary code via a -S (scheme) argument that specifies a large file, a different vulnerability than CVE-2001-1063. | Assigned (20051129) | None (candidate not yet proposed) | View | |
80643 | CVE-2015-3366 | Candidate | Cross-site request forgery (CSRF) vulnerability in the Alfresco module before 6.x-1.3 for Drupal allows remote attackers to hijack the authentication of arbitrary users for requests that delete an alfresco node via unspecified vectors. | Assigned (20150421) | None (candidate not yet proposed) | View | |
15363 | CVE-2005-4159 | Candidate | ** DISPUTED ** NOTE: this issue has been disputed by the vendor and third parties. SQL injection vulnerability in Memberlist.php in Simple Machines Forum (SMF) 1.1 rc1 and earlier allows remote attackers to execute arbitrary SQL commands via the start parameter. NOTE: the vendor says that since only one character can be modified, there is no SQL injection. Thus this might be an "invalid SQL syntax error." Multiple followups support the vendor. | Assigned (20051211) | None (candidate not yet proposed) | View | |
80899 | CVE-2015-3622 | Candidate | The _asn1_extract_der_octet function in lib/decoding.c in GNU Libtasn1 before 4.5 allows remote attackers to cause a denial of service (out-of-bounds heap read) via a crafted certificate. | Assigned (20150430) | None (candidate not yet proposed) | View |
Page 872 of 20943, showing 5 records out of 104715 total, starting on record 4356, ending on 4360