CVE List

Id CVE No. Status Description Phase Votes Comments Actions
21008  CVE-2006-4904  Candidate  Dynamic variable evaluation vulnerability in cmpi.php in Qualiteam X-Cart 4.1.3 and earlier allows remote attackers to overwrite arbitrary program variables and execute arbitrary PHP code, as demonstrated by PHP remote file inclusion via the xcart_dir parameter.  Assigned (20060920)  None (candidate not yet proposed)    View
86544  CVE-2016-0248  Candidate  IBM Security Guardium 9.0 before p700 and 10.0 before p100 allows man-in-the-middle attackers to obtain sensitive query-string information from SSL sessions via unspecified vectors.  Assigned (20151208)  None (candidate not yet proposed)    View
21264  CVE-2006-5160  Candidate  ** DISPUTED ** Multiple unspecified vulnerabilities in Mozilla Firefox have unspecified vectors and impact, as claimed during ToorCon 2006. NOTE: the vendor and original researchers have released a follow-up comment disputing this issue, in which one researcher states that "I have no undisclosed Firefox vulnerabilities. The person who was speaking with me made this claim, and I honestly have no idea if he has them or not."  Assigned (20061003)  None (candidate not yet proposed)    View
86800  CVE-2016-0504  Candidate  Unspecified vulnerability in Oracle MySQL 5.6.27 and earlier and 5.7.9 allows remote authenticated users to affect availability via vectors related to DML, a different vulnerability than CVE-2016-0503.  Assigned (20151209)  None (candidate not yet proposed)    View
21520  CVE-2006-5416  Candidate  Cross-site scripting (XSS) vulnerability in my.acctab.php3 in F5 Networks FirePass 1000 SSL VPN 5.5, and possibly earlier, allows remote attackers to inject arbitrary web script or HTML via the sid parameter.  Assigned (20061019)  None (candidate not yet proposed)    View

Page 1298 of 20943, showing 5 records out of 104715 total, starting on record 6486, ending on 6490

Actions