CVE List

Id CVE No. Status Description Phase Votes Comments Actions
23041  CVE-2006-6937  Candidate  SQL injection vulnerability in displaypic.asp in Xtreme ASP Photo Gallery allows remote attackers to inject arbitrary SQL commands via the sortorder parameter.  Assigned (20070116)  None (candidate not yet proposed)    View
88577  CVE-2016-1758  Candidate  The kernel in Apple iOS before 9.3 and OS X before 10.11.4 allows attackers to obtain sensitive memory-layout information or cause a denial of service (out-of-bounds read) via a crafted app.  Assigned (20160113)  None (candidate not yet proposed)    View
23297  CVE-2006-7193  Candidate  ** DISPUTED ** PHP remote file inclusion vulnerability in unit_test/test_cases.php in Smarty 2.6.1 allows remote attackers to execute arbitrary PHP code via a URL in the SMARTY_DIR parameter. NOTE: this issue is disputed by CVE and a third party because SMARTY_DIR is a constant.  Assigned (20070412)  None (candidate not yet proposed)    View
88833  CVE-2016-2014  Candidate  HPE Network Node Manager i (NNMi) 9.20, 9.23, 9.24, 9.25, 10.00, and 10.01 allows remote authenticated users to modify data or cause a denial of service via unspecified vectors.  Assigned (20160122)  None (candidate not yet proposed)    View
23553  CVE-2007-0196  Candidate  SQL injection vulnerability in admin_check_user.asp in Motionborg Web Real Estate 2.1 and earlier allows remote attackers to execute arbitrary SQL commands via the username field (txtUserName parameter) and possibly other parameters. NOTE: some details were obtained from third party information.  Assigned (20070110)  None (candidate not yet proposed)    View

Page 146 of 20943, showing 5 records out of 104715 total, starting on record 726, ending on 730

Actions