CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
17429 | CVE-2006-1325 | Candidate | Cross-site scripting (XSS) vulnerability in Streber 0.055 allows remote attackers to inject arbitrary web script or HTML via unknown attack vectors. | Assigned (20060320) | None (candidate not yet proposed) | View | |
82965 | CVE-2015-5688 | Candidate | Directory traversal vulnerability in lib/app/index.js in Geddy before 13.0.8 for Node.js allows remote attackers to read arbitrary files via a ..%2f (dot dot encoded slash) in the PATH_INFO to the default URI. | Assigned (20150727) | None (candidate not yet proposed) | View | |
17685 | CVE-2006-1581 | Candidate | Directory traversal vulnerability in index.php in Blank"N"Berg 0.2 allows remote attackers to read arbitrary files via a .. (dot dot) in the _path parameter. | Assigned (20060402) | None (candidate not yet proposed) | View | |
83221 | CVE-2015-5944 | Candidate | CoreText in Apple OS X before 10.11.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted font file. | Assigned (20150806) | None (candidate not yet proposed) | View | |
17941 | CVE-2006-1837 | Candidate | SQL injection vulnerability in archiv2.php in Fuju News 1.0 allows remote attackers to execute arbitrary SQL commands via the ID parameter. | Assigned (20060419) | None (candidate not yet proposed) | View |
Page 1677 of 20943, showing 5 records out of 104715 total, starting on record 8381, ending on 8385