CVE List

Id CVE No. Status Description Phase Votes Comments Actions
23047  CVE-2006-6943  Candidate  PhpMyAdmin before 2.9.1.1 allows remote attackers to obtain the full server path via direct requests to (a) scripts/check_lang.php and (b) themes/darkblue_orange/layout.inc.php; and via the (1) lang[], (2) target[], (3) db[], (4) goto[], (5) table[], and (6) tbl_group[] array arguments to (c) index.php, and the (7) back[] argument to (d) sql.php; and an invalid (8) sort_by parameter to (e) server_databases.php and (9) db parameter to (f) db_printview.php.  Assigned (20070118)  None (candidate not yet proposed)    View
88583  CVE-2016-1764  Candidate  The Content Security Policy (CSP) implementation in Messages in Apple OS X before 10.11.4 allows remote attackers to obtain sensitive information via a javascript: URL.  Assigned (20160113)  None (candidate not yet proposed)    View
23303  CVE-2006-7199  Candidate  EMC RSA Security SiteKey allows remote attackers to display the correct image via a man-in-the-middle (MITM) attack in which an attacker-controlled server proxies authentication data to and from a legitimate SiteKey server. NOTE: the vendor disputes the severity of the issue, stating that it is easier to monitor this attack than "attacks against static web pages."  Assigned (20070430)  None (candidate not yet proposed)    View
88839  CVE-2016-2020  Candidate  HPE Systems Insight Manager (SIM) before 7.5.1 allows remote authenticated users to obtain sensitive information or modify data via unspecified vectors, a different vulnerability than CVE-2016-2017, CVE-2016-2019, CVE-2016-2021, CVE-2016-2022, and CVE-2016-2030.  Assigned (20160122)  None (candidate not yet proposed)    View
23559  CVE-2007-0202  Candidate  SQL injection vulnerability in index.php in @lex Guestbook 4.0.2 and earlier, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the lang parameter.  Assigned (20070110)  None (candidate not yet proposed)    View

Page 1205 of 20943, showing 5 records out of 104715 total, starting on record 6021, ending on 6025

Actions