CVE List

Id CVE No. Status Description Phase Votes Comments Actions
19713  CVE-2006-3609  Candidate  Cross-site scripting (XSS) vulnerability in index.php in Orbitcoders OrbitMATRIX 1.0 allows remote attackers to inject arbitrary web script or HTML via the page_name parameter with an IMG tag containing a javascript URI in the SRC attribute.  Assigned (20060714)  None (candidate not yet proposed)    View
85249  CVE-2015-7972  Candidate  The (1) libxl_set_memory_target function in tools/libxl/libxl.c and (2) libxl__build_post function in tools/libxl/libxl_dom.c in Xen 3.4.x through 4.6.x do not properly calculate the balloon size when using the populate-on-demand (PoD) system, which allows local HVM guest users to cause a denial of service (guest crash) via unspecified vectors related to "heavy memory pressure."  Assigned (20151023)  None (candidate not yet proposed)    View
19969  CVE-2006-3865  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20060726)  None (candidate not yet proposed)    View
85505  CVE-2015-8228  Candidate  Directory traversal vulnerability in the SFTP server in Huawei AR 120, 150, 160, 200, 500, 1200, 2200, 3200, and 3600 routers with software before V200R006SPH003 allows remote authenticated users to access arbitrary directories via unspecified vectors.  Assigned (20151117)  None (candidate not yet proposed)    View
20225  CVE-2006-4121  Candidate  PHP remote file inclusion vulnerability in owimg.php3 in See-Commerce 1.0.625 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the path parameter.  Assigned (20060814)  None (candidate not yet proposed)    View

Page 109 of 20943, showing 5 records out of 104715 total, starting on record 541, ending on 545

Actions