CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
21008 | CVE-2006-4904 | Candidate | Dynamic variable evaluation vulnerability in cmpi.php in Qualiteam X-Cart 4.1.3 and earlier allows remote attackers to overwrite arbitrary program variables and execute arbitrary PHP code, as demonstrated by PHP remote file inclusion via the xcart_dir parameter. | Assigned (20060920) | None (candidate not yet proposed) | View | |
86544 | CVE-2016-0248 | Candidate | IBM Security Guardium 9.0 before p700 and 10.0 before p100 allows man-in-the-middle attackers to obtain sensitive query-string information from SSL sessions via unspecified vectors. | Assigned (20151208) | None (candidate not yet proposed) | View | |
21264 | CVE-2006-5160 | Candidate | ** DISPUTED ** Multiple unspecified vulnerabilities in Mozilla Firefox have unspecified vectors and impact, as claimed during ToorCon 2006. NOTE: the vendor and original researchers have released a follow-up comment disputing this issue, in which one researcher states that "I have no undisclosed Firefox vulnerabilities. The person who was speaking with me made this claim, and I honestly have no idea if he has them or not." | Assigned (20061003) | None (candidate not yet proposed) | View | |
86800 | CVE-2016-0504 | Candidate | Unspecified vulnerability in Oracle MySQL 5.6.27 and earlier and 5.7.9 allows remote authenticated users to affect availability via vectors related to DML, a different vulnerability than CVE-2016-0503. | Assigned (20151209) | None (candidate not yet proposed) | View | |
21520 | CVE-2006-5416 | Candidate | Cross-site scripting (XSS) vulnerability in my.acctab.php3 in F5 Networks FirePass 1000 SSL VPN 5.5, and possibly earlier, allows remote attackers to inject arbitrary web script or HTML via the sid parameter. | Assigned (20061019) | None (candidate not yet proposed) | View |
Page 1298 of 20943, showing 5 records out of 104715 total, starting on record 6486, ending on 6490