CVE List

Id CVE No. Status Description Phase Votes Comments Actions
86027  CVE-2015-8750  Candidate  libdwarf 20151114 and earlier allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a debug_abbrev section marked NOBITS in an ELF file.  Assigned (20160107)  None (candidate not yet proposed)    View
20747  CVE-2006-4643  Candidate  SQL injection vulnerability in consult/joueurs.php in Uni-Vert PhpLeague 0.82 and earlier allows remote attackers to execute arbitrary SQL commands via the id_joueur parameter. NOTE: the provenance of this information is unknown; the details are obtained from third party information.  Assigned (20060908)  None (candidate not yet proposed)    View
86283  CVE-2015-9006  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170328)  None (candidate not yet proposed)    View
21003  CVE-2006-4899  Candidate  The ePPIServlet script in Computer Associates (CA) eTrust Security Command Center 1.0 and r8 up to SP1 CR2, when running on Windows, allows remote attackers to obtain the web server path via a """ (single quote) in the PIProfile function, which leaks the path in an error message.  Assigned (20060920)  None (candidate not yet proposed)    View
86539  CVE-2016-0243  Candidate  Cross-site scripting (XSS) vulnerability in IBM WebSphere Portal 6.1.0.x through 6.1.0.6 CF27, 6.1.5.x through 6.1.5.3 CF27, 7.x through 7.0.0.2 CF29, 8.0.x before 8.0.0.1 CF20, and 8.5.x before 8.5.0.0 CF09 allows remote attackers to inject arbitrary web script or HTML via a crafted URL, a different vulnerability than CVE-2016-0244.  Assigned (20151208)  None (candidate not yet proposed)    View

Page 1519 of 20943, showing 5 records out of 104715 total, starting on record 7591, ending on 7595

Actions