CVE List

Id CVE No. Status Description Phase Votes Comments Actions
20498  CVE-2006-4394  Candidate  A logic error in LoginWindow in Apple Mac OS X 10.4 through 10.4.7, allows network accounts without GUIds to bypass service access controls and log into the system using loginwindow via unknown vectors.  Assigned (20060828)  None (candidate not yet proposed)    View
86034  CVE-2015-8757  Candidate  Cross-site scripting (XSS) vulnerability in the Extension Manager in TYPO3 6.2.x before 6.2.16 and 7.x before 7.6.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to extension data during an extension installation.  Assigned (20160108)  None (candidate not yet proposed)    View
20754  CVE-2006-4650  Candidate  Cisco IOS 12.0, 12.1, and 12.2, when GRE IP tunneling is used and the RFC2784 compliance fixes are missing, does not verify the offset field of a GRE packet during decapsulation, which leads to an integer overflow that references data from incorrect memory locations, which allows remote attackers to inject crafted packets into the routing queue, possibly bypassing intended router ACLs.  Assigned (20060908)  None (candidate not yet proposed)    View
86290  CVE-2015-9013  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170328)  None (candidate not yet proposed)    View
21010  CVE-2006-4906  Candidate  SQL injection vulnerability in modules/calendar/week.php in More.groupware 0.74 allows remote attackers to execute arbitrary SQL commands via the new_calendarid parameter.  Assigned (20060920)  None (candidate not yet proposed)    View

Page 1482 of 20943, showing 5 records out of 104715 total, starting on record 7406, ending on 7410

Actions