CVE List

Id CVE No. Status Description Phase Votes Comments Actions
17680  CVE-2006-1576  Candidate  Direct static code injection vulnerability in QLnews 1.2 allows remote authenticated administrators to execute arbitrary PHP code by modifying config.php.  Assigned (20060402)  None (candidate not yet proposed)    View
83216  CVE-2015-5939  Candidate  ImageIO in Apple iOS before 9.1, OS X before 10.11.1, and watchOS before 2.0.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via crafted metadata in an image, a different vulnerability than CVE-2015-5935, CVE-2015-5936, and CVE-2015-5937.  Assigned (20150806)  None (candidate not yet proposed)    View
17936  CVE-2006-1832  Candidate  sysinfo.cgi in sysinfo 1.21 allows remote attackers to obtain the installation path via the debugger action.  Assigned (20060419)  None (candidate not yet proposed)    View
83472  CVE-2015-6195  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20150814)  None (candidate not yet proposed)    View
18192  CVE-2006-2088  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in Devsyn Open Bulletin Board (OpenBB) 1.0.6 allow remote attackers to inject arbitrary web script or HTML via (1) the FID parameter in board.php and (2) the TID parameter in read.php. NOTE: the SQL injection issues are already covered by CVE-2005-1612 (read.php) and CVE-2005-2566 (board.php).  Assigned (20060428)  None (candidate not yet proposed)    View

Page 1299 of 20943, showing 5 records out of 104715 total, starting on record 6491, ending on 6495

Actions