CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
22785 | CVE-2006-6681 | Candidate | Pedro Lineu Orso chetcpasswd 2.3.3 does not have a rate limit for client requests, which might allow remote attackers to determine passwords via a dictionary attack. | Assigned (20061221) | None (candidate not yet proposed) | View | |
88321 | CVE-2016-1502 | Candidate | NetApp SnapCenter Server 1.0 and 1.0P1 allows remote attackers to partially bypass authentication and then list and delete backups via unspecified vectors. | Assigned (20160107) | None (candidate not yet proposed) | View | |
23041 | CVE-2006-6937 | Candidate | SQL injection vulnerability in displaypic.asp in Xtreme ASP Photo Gallery allows remote attackers to inject arbitrary SQL commands via the sortorder parameter. | Assigned (20070116) | None (candidate not yet proposed) | View | |
88577 | CVE-2016-1758 | Candidate | The kernel in Apple iOS before 9.3 and OS X before 10.11.4 allows attackers to obtain sensitive memory-layout information or cause a denial of service (out-of-bounds read) via a crafted app. | Assigned (20160113) | None (candidate not yet proposed) | View | |
23297 | CVE-2006-7193 | Candidate | ** DISPUTED ** PHP remote file inclusion vulnerability in unit_test/test_cases.php in Smarty 2.6.1 allows remote attackers to execute arbitrary PHP code via a URL in the SMARTY_DIR parameter. NOTE: this issue is disputed by CVE and a third party because SMARTY_DIR is a constant. | Assigned (20070412) | None (candidate not yet proposed) | View |
Page 1269 of 20943, showing 5 records out of 104715 total, starting on record 6341, ending on 6345