CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
22036 | CVE-2006-5932 | Candidate | Kahua before 0.7, when running multiple applications under a single supervisor, grants application access on the basis of username instead of username and database name, which allows remote authenticated users to obtain unauthorized access if different databases assign the same username to different user accounts. | Assigned (20061115) | None (candidate not yet proposed) | View | |
87572 | CVE-2016-10074 | Candidate | The mail transport (aka Swift_Transport_MailTransport) in Swift Mailer before 5.4.5 might allow remote attackers to pass extra parameters to the mail command and consequently execute arbitrary code via a " (backslash double quote) in a crafted e-mail address in the (1) From, (2) ReturnPath, or (3) Sender header. | Assigned (20161227) | None (candidate not yet proposed) | View | |
22292 | CVE-2006-6188 | Candidate | Cross-site scripting (XSS) vulnerability in view_search.asp in ClickTech Click Gallery allows remote attackers to inject arbitrary web script or HTML via the txtKeyWord parameter. NOTE: some of these details are obtained from third party information. | Assigned (20061130) | None (candidate not yet proposed) | View | |
87828 | CVE-2016-10307 | Candidate | Trango ApexLynx 2.0, ApexOrion 2.0, GigaLynx 2.0, GigaOrion 2.0, and StrataLink 3.0 devices have a built-in, hidden root account, with a default password for which the MD5 hash value is public (but the cleartext value is perhaps not yet public). This account is accessible via SSH and/or TELNET, and grants access to the underlying embedded UNIX OS on the device, allowing full control over it. | Assigned (20170329) | None (candidate not yet proposed) | View | |
22548 | CVE-2006-6444 | Candidate | Stack-based buffer overflow in Nostra DivX Player 2.1, 2.2.00.0, and possibly earlier, allows remote attackers to execute arbitrary code via a long string in an M3U file. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information. | Assigned (20061210) | None (candidate not yet proposed) | View |
Page 1645 of 20943, showing 5 records out of 104715 total, starting on record 8221, ending on 8225